Offensive Security
6e7ec5be32
DB: 2017-03-10
...
20 new exploits
Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 - Denial of Service
Apache Struts2 - Skill Name Remote Code Execution
Apache Struts 2 - Skill Name Remote Code Execution
Linux - Reverse Shell Shellcode (65 bytes)
Linux/x86 - SELinux Permissive Mode Switcher Shellcode (45 bytes)
Linux - TCP Reverse Shell Shellcode (65 bytes)
Linux/x86 - SELinux Permissive Mode Switcher Shellcode (45 bytes)
Windows x86 - Executable Directory Search Shellcode (130 bytes)
Apache Struts2 < 2.3.1 - Multiple Vulnerabilities
Apache Struts 2 < 2.3.1 - Multiple Vulnerabilities
Country on Sale Script - SQL Injection
Media Search Engine Script - 'search' Parameter SQL Injection
Soundify 1.1 - 'tid' Parameter SQL Injection
BistroStays 3.0 - 'guests' Parameter SQL Injection
Nlance 2.2 - SQL Injection
Busewe 1.2 - SQL Injection
Fashmark 1.2 - 'category' Parameter SQL Injection
TradeMart 1.1 - SQL Injection
Drupal 7.x Module Services - Remote Code Execution
WordPress Plugin Mac Photo Gallery 3.0 - Arbitrary File Download
WordPress Plugin Apptha Slider Gallery 1.0 - SQL Injection
WordPress Plugin Apptha Slider Gallery 1.0 - Arbitrary File Download
WordPress Plugin PICA Photo Gallery 1.0 - SQL Injection
Apache Struts 2.3.5 < 2.3.31 / 2.5 < 2.5.10 - Remote Code Execution
ASUSWRT RT-AC53 (3.0.0.4.380.6038) - Cross-Site Scripting
ASUSWRT RT-AC53 (3.0.0.4.380.6038) - Session Stealing
ASUSWRT RT-AC53 (3.0.0.4.380.6038) - Remote Code Execution
FTP Voyager Scheduler 16.2.0 - Cross-Site Request Forgery
2017-03-10 05:01:18 +00:00
Offensive Security
06a7933be4
DB: 2017-03-09
...
8 new exploits
USBPcap - Privilege Escalation
Linux - Reverse Shell Shellcode (66 bytes)
Linux - Reverse Shell Shellcode (65 bytes)
Themeforest Clone Script - SQL Injection
Graphicriver Clone Script - SQL Injection
Codecanyon Clone Script - SQL Injection
Audiojungle Clone Script - SQL Injection
Videohive Clone Script - SQL Injection
Envato Clone Script - SQL Injection
Navetti PricePoint 4.6.0.0 - SQL Injection / Cross-Site Scripting / Cross-Site Request Forgery
2017-03-09 05:01:19 +00:00
Offensive Security
6883068111
DB: 2017-03-08
...
5 new exploits
Evostream Media Server 1.7.1 (x64) - Denial of Service
Azure Data Expert Ultimate 2.2.16 - Buffer Overflow
Mini CMS 1.1 - 'name' Parameter SQL Injection
Daily Deals Script 1.0 - 'id' Parameter SQL Injection
Bull/IBM AIX Clusterwatch/Watchware - Multiple Vulnerabilities
2017-03-08 05:01:19 +00:00
Offensive Security
9aef664a7e
DB: 2017-03-07
...
31 new exploits
iSQL 1.0 - isql_main.c Buffer Overflow (PoC)
iSQL 1.0 - 'isql_main.c' Buffer Overflow (PoC)
Memcached 1.4.33 - 'Crash' PoC
Memcached 1.4.33 - 'Add' PoC
Memcached 1.4.33 - 'sasl' PoC
Memcached 1.4.33 - 'Crash' (PoC)
Memcached 1.4.33 - 'Add' (PoC)
Memcached 1.4.33 - 'sasl' (PoC)
Windows 10 (x86/x64) WLAN AutoConfig - Denial of Service (POC)
Windows 10 (x86/x64) WLAN AutoConfig - Denial of Service (PoC)
Microsoft Windows gdi32.dll - EMR_SETDIBITSTODEVICE Heap-Based Out-of-Bounds Reads / Memory Disclosure
Microsoft Windows - 'gdi32.dll' EMR_SETDIBITSTODEVICE Heap-Based Out-of-Bounds Reads / Memory Disclosure
Microsoft Office PowerPoint 2010 GDI - 'GDI32!ConvertDxArray' Insufficient Bounds Check
Microsoft Office PowerPoint 2010 - GDI 'GDI32!ConvertDxArray' Insufficient Bounds Check
Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free PoC
Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free (PoC)
Conext ComBox 865-1058 - Denial of Service
Microsoft Internet Explorer 11 (Windows 10) - VBScript Memory Corruption Proof-of-Concept Exploit (MS16-051)
Microsoft Internet Explorer 11 (Windows 10) - VBScript Memory Corruption (PoC) (MS16-051)
Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' /proc/self/mem Race Condition PoC (Write Access)
Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' /proc/self/mem Race Condition (PoC) (Write Access)
Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' PTRACE_POKEDATA Race Condition PoC (Write Access)
Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' PTRACE_POKEDATA Race Condition (PoC) (Write Access)
CyberGhost 6.0.4.2205 - Privilege Escalation
FTPShell Client 6.53 - Buffer Overflow
Linux/x86-64 - /bin/sh Shellcode
Linux/x86-64 - /bin/sh Shellcode (34 bytes)
Linux/x86-64 - Reverse Shell Shellcode
Linux/x86-64 - Reverse Shell Shellcode (134 bytes)
Linux/x86-64 - XOR Encode execve Shellcode
Linux/x86-64 - XOR Encode execve Shellcode (84 bytes)
Linux/x86_64 - Bind 5600 TCP Port - Shellcode (87 bytes)
Linux/x86_64 - execve /bin/sh Shellcode (22 bytes)
Linux/x86-64 - Bind 5600 TCP Port - Shellcode (87 bytes)
Linux/x86-64 - execve /bin/sh Shellcode (22 bytes)
Linux/x86_64 - Random Listener Shellcode (54 bytes)
Linux/x86-64 - Random Listener Shellcode (54 bytes)
Wordpress < 4.7.1 - Username Enumeration
WordPress < 4.7.1 - Username Enumeration
Advanced Bus Booking Script 2.04 - SQL Injection
Entrepreneur Bus Booking Script 3.03 - 'hid_Busid' Parameter SQL Injection
Single Theater Booking Script - 'newsid' Parameter SQL Injection
Responsive Events & Movie Ticket Booking Script - SQL Injection
Online Cinema and Event Booking Script 2.01 - 'newsid' Parameter SQL Injection
Redbus Clone Script 3.05 - 'hid_Busid' Parameter SQL Injection
Groupon Clone Script 3.01 - 'catid' Parameter SQL Injection
Naukri Clone Script 3.02 - 'type' Parameter SQL Injection
Yellow Pages Clone Script 1.3.4 - SQL Injection
Advanced Matrimonial Script 2.0.3 - SQL Injection
Advanced Real Estate Script 4.0.6 - SQL Injection
PHP Classifieds Rental Script 3.6.0 - 'scatid' Parameter SQL Injection
Entrepreneur B2B Script 2.0.4 - 'id' Parameter SQL Injection
PHP Matrimonial Script 3.0 - SQL Injection
MLM Binary Plan Script 2.0.5 - SQL Injection
MLM Forced Matrix 2.0.7 - SQL Injection
MLM Forex Market Plan Script 2.0.1 - SQL Injection
MLM Membership Plan Script 2.0.5 - SQL Injection
Multireligion Responsive Matrimonial Script 4.7.1 - SQL Injection
Network Community Script 3.0.2 - SQL Injection
PHP B2B Script 3.05 - SQL Injection
Responsive Matrimonial Script 4.0.1 - SQL Injection
Schools Alert Management Script 2.01 - 'list_id' Parameter SQL Injection
Select Your College Script 2.01 - SQL Injection
Social Network Script 3.01 - 'id' Parameter SQL Injection
Website Broker Script 3.02 - 'view' Parameter SQL Injection
WordPress Multiple Plugins - Arbitrary File Upload
Deluge Web UI 1.3.13 - Cross-Site Request Forgery
2017-03-07 05:01:20 +00:00
Offensive Security
4811e36301
DB: 2017-03-06
...
9 new exploits
Linux/x86-64 - Polymorphic Flush IPTables Shellcode (47 bytes)
Linux/x86-64 - NetCat Reverse Shell Shellcode (72 bytes)
Linux/x86-64 - Polymorphic NetCat Reverse Shell Shellcode (106 bytes)
Joomla! Component com_jumi - (fileid) Blind SQL Injection
Joomla! Component Jumi - 'fileid' Parameter Blind SQL Injection
EPSON TMNet WebConfig 1.00 - Cross-Site Scripting
Joomla! Component JUX EventOn 1.0.1 - 'id' Parameter SQL Injection
Joomla! Component Monthly Archive 3.6.4 - 'author_form' Parameter SQL Injection
Joomla! Component AYS Quiz 1.0 - 'id' Parameter SQL Injection
Joomla! Component Content ConstructionKit 1.1 - SQL Injection
Joomla! Component AltaUserPoints 1.1 - 'userid' Parameter SQL Injection
2017-03-06 05:01:18 +00:00
Offensive Security
d3106003d4
DB: 2017-03-04
...
5 new exploits
Linux/x86-64 - Polymorphic Setuid(0) & Execve(/bin/sh) Shellcode (31 bytes)
Wordpress < 4.7.1 - Username Enumeration
NetGain Enterprise Manager 7.2.562 - 'Ping' Command Injection
Joomla! Component Coupon 3.5 - SQL Injection
pfSense 2.3.2 - Cross-Site Scripting / Cross-Site Request Forgery
2017-03-04 05:01:19 +00:00
Offensive Security
a3ee969c7d
DB: 2017-03-03
...
5 new exploits
Php Classified OLX Clone Script - 'category' Parameter SQL Injection
Joomla! Component Abstract 2.1 - SQL Injection
Joomla! Component StreetGuessr Game 1.0 - SQL Injection
Joomla! Component Guesser 1.0.4 - 'type' Parameter SQL Injection
Joomla! Component Recipe Manager 2.2 - 'id' Parameter SQL Injection
2017-03-03 05:01:17 +00:00
Offensive Security
846ce42eca
DB: 2017-03-02
...
14 new exploits
SysGauge 1.5.18 - Buffer Overflow
WePresent WiPG-1500 - Backdoor Account
Windows x86 - Reverse TCP Staged Alphanumeric Shellcode (332 Bytes)
DLink DSL-2730U Wireless N 150 - Cross-Site Request Forgery
Aruba AirWave 8.2.3 - XML External Entity Injection / Cross-Site Scripting
WordPress Plugin Contact Form Manager - Cross-Site Request Forgery / Cross-Site Scripting
WordPress Plugin User Login Log 2.2.1 - Cross-Site Scripting
WordPress Plugin Popup by Supsystic 1.7.6 - Cross-Site Request Forgery
WordPress Plugin NewStatPress 1.2.4 - Cross-Site Scripting
WordPress Plugin Global Content Blocks 2.1.5 - Cross-Site Request Forgery
WordPress Plugin File Manager 3.0.1 - Cross-Site Request Forgery
SchoolDir - SQL Injection
Rage Faces Script 1.3 - SQL Injection
Meme Maker Script 2.1 - 'user' Parameter SQL Injection
2017-03-02 05:01:19 +00:00
Offensive Security
7fa7a111c4
DB: 2017-03-01
...
5 new exploits
BlueIris 4.5.1.4 - Denial of Service
Synchronet BBS 3.16c - Denial of Service
Cisco AnyConnect Secure Mobility Client 4.3.04027 - Privilege Escalation
Linux/x86-64 - Reverse Shell Shellcode (84 bytes)
NETGEAR DGN2200v1/v2/v3/v4 - Cross-Site Request Forgery
2017-03-01 05:01:18 +00:00
Offensive Security
026ded7298
DB: 2017-02-28
...
12 new exploits
MVPower DVR TV-7104HE 1.8.4 115215B9 - Shell Unauthenticated Command Execution (Metasploit)
Windows x86 - Executable Directory Search Shellcode (130 bytes)
Linux/x86_64 - Random Listener Shellcode (54 bytes)
NETGEAR DGN2200v1/v2/v3/v4 - 'dnslookup.cgi' Remote Command Execution
Joomla! Component Gnosis 1.1.2 - 'id' Parameter SQL Injection
Trend Micro InterScan Messaging Security (Virtual Appliance) - Remote Code Execution (Metasploit)
Joomla! Component Appointments for JomSocial 3.8.1 - SQL Injection
Joomla! Component My MSG 3.2.1 - SQL Injection
Joomla! Component Spinner 360 1.3.0 - SQL Injection
Joomla! Component JomSocial - SQL Injection
Grails PDF Plugin 0.6 - XML External Entity Injection
Joomla! Component OneVote! 1.0 - SQL Injection
2017-02-28 05:01:17 +00:00
Offensive Security
3f1035a488
DB: 2017-02-27
...
2 new exploits
Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free PoC
Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free Privilege Escalation
2017-02-27 05:01:20 +00:00
Offensive Security
5d75646fa8
DB: 2017-02-26
...
1 new exploits
Joomla! Component Intranet Attendance Track 2.6.5 - SQL Injection
2017-02-26 05:01:19 +00:00
Offensive Security
438afbcaf8
DB: 2017-02-25
...
12 new exploits
Microsoft Edge and Internet Explorer - 'HandleColumnBreakOnColumnSpanningElement' Type Confusion
Joomla! Component JooDatabase 3.1.0 - SQL Injection
Joomla! Component JO Facebook Gallery 4.5 - SQL Injection
Joomla! Component AJAX Search for K2 2.2 - SQL Injection
Joomla! Component Community Surveys 4.3 - SQL Injection
Joomla! Component Community Polls 4.5.0 - SQL Injection
Apple WebKit 10.0.2 - 'FrameLoader::clear' Universal Cross-Site Scripting
Joomla! Component GPS Tools 4.0.1 - SQL Injection
Apple WebKit 10.0.2 - Cross-Origin or Sandboxed IFRAME Pop-up Blocker Bypass
Joomla! Component Community Quiz 4.3.5 - SQL Injection
Apple WebKit 10.0.2 - 'Frame::setDocument' Universal Cross-Site Scripting
memcache-viewer - Cross-Site Scripting
2017-02-25 05:01:19 +00:00
Offensive Security
3710b90d25
DB: 2017-02-24
...
6 new exploits
macOS HelpViewer 10.12.1 - XSS Leads to Arbitrary File Execution and Arbitrary File Read
Linux/x86-64 - Egghunter Shellcode (38 bytes)
WordPress Plugin Mail Masta 1.0 - SQL Injection
Joomla! Component Store for K2 3.8.2 - SQL Injection
Joomla! Component UserExtranet 1.3.1 - SQL Injection
Joomla! Component MultiTier 3.1 - SQL Injection
2017-02-24 05:01:18 +00:00
Offensive Security
c7c1c7d92e
DB: 2017-02-23
...
13 new exploits
EasyCom For PHP 4.0.0 - Buffer Overflow (PoC)
EasyCom For PHP 4.0.0 - Denial of Service
Google Chrome - 'layout' Out-of-Bounds Read
Shutter 0.93.1 - Code Execution
DiskSavvy Enterprise - GET Buffer Overflow (Metasploit)
Disk Savvy Enterprise - GET Buffer Overflow (Metasploit)
Disk Savvy Enterprise 9.4.18 - Buffer Overflow (SEH)
Joomla! Component ContentMap 1.3.8 - 'contentid' Parameter SQL Injection
Joomla! Component VehicleManager 3.9 - SQL Injection
Joomla! Component RealEstateManager 3.9 - SQL Injection
Joomla! Component BookLibrary 3.6.1 - SQL Injection
Joomla! Component MediaLibrary Basic 3.5 - SQL Injection
Lock Photos Album&Videos Safe 4.3 - Directory Traversal
ProjectSend r754 - Insecure Direct Object Reference
Teradici Management Console 2.2.0 - Privilege Escalation
2017-02-23 05:01:18 +00:00
Offensive Security
ad7bd81657
DB: 2017-02-22
...
21 new exploits
Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Heap Corruption
Microsoft Office PowerPoint 2010 - MSO/OART Heap Out-of-Bounds Access
Microsoft Office PowerPoint 2010 GDI - 'GDI32!ConvertDxArray' Insufficient Bounds Check
Adobe Flash - MP4 AMF Parsing Overflow
Adobe Flash - SWF Stack Corruption
Adobe Flash - Use-After-Free in Applying Bitmap Filter
Adobe Flash - YUVPlane Decoding Heap Overflow
DIGISOL DG-HR1400 Wireless Router - Cross-Site Request Forgery
Joomla! Component J-HotelPortal 6.0.2 - 'review_id' Parameter SQL Injection
Joomla! Component J-CruiseReservation Standard 3.0 - 'city' Parameter SQL Injection
Joomla! Component Eventix Events Calendar 1.0 - SQL Injection
Joomla! Component J-MultipleHotelReservation Standard 6.0.2 - 'review_id' Parameter SQL Injection
Joomla! Component Directorix Directory Manager 1.1.1 - SQL Injection
Joomla! Component Magic Deals Web 1.2.0 - SQL Injection
Joomla! Component J-BusinessDirectory 4.6.8 - SQL Injection
Joomla! Component AppointmentBookingPro 4.0.1 - SQL Injection
Sophos Web Appliance 4.2.1.3 - block/unblock Remote Command Injection (Metasploit)
Sophos Web Appliance 4.2.1.3 - DiagnosticTools Remote Command Injection (Metasploit)
Sonicwall 8.1.0.2-14sv - 'extensionsettings.cgi' Remote Command Injection (Metasploit)
Sonicwall 8.1.0.2-14sv - 'viewcert.cgi' Remote Command Injection (Metasploit)
AlienVault OSSIM/USM <= 5.3.1 - Remote Code Execution (Metasploit)
2017-02-22 05:01:19 +00:00
Offensive Security
4195f70ade
DB: 2017-02-21
...
6 new exploits
EFS Easy Chat Server - Authentication Request Buffer Overflow (SEH)
EFS Easy Chat Server 2.2 - Authentication Request Buffer Overflow (SEH)
EFS Easy Chat Server - Cross-Site Request Forgery (Change Admin Password)
EFS Easy Chat Server 2.2 - Cross-Site Request Forgery (Change Admin Password)
EFS Easy Chat Server - Authentication Request Buffer Overflow (Perl)
EFS Easy Chat Server 2.2 - Authentication Request Buffer Overflow (Perl)
yaws 1.89 - Directory Traversal
Yaws 1.89 - Directory Traversal
Linux/x86 - SELinux Permissive Mode Switcher Shellcode (45 bytes)
Jogjacamp JProfile Gold - (id_news) SQL Injection
Jogjacamp JProfile Gold - 'id_news' Parameter SQL Injection
RSS News AutoPilot Script 1.0.1 / 3.0.3 - Cross-Site Request Forgery
Joomla! Component MaQma Helpdesk 4.2.7 - 'id' Parameter SQL Injection
Joomla! Component PayPal IPN for DOCman 3.1 - 'id' Parameter SQL Injection
Album Lock 4.0 iOS - Directory Traversal
Tenda N3 Wireless N150 Home Router - Authentication Bypass
2017-02-21 05:01:20 +00:00
Offensive Security
ae0dd9fa7c
DB: 2017-02-20
...
14 new exploits
Linux - Reverse Shell Shellcode (66 bytes)
Joomla! Component com_Joomlaoc - 'id' SQL Injection
Joomla! Component Joomloc 1.0 - 'id' Parameter SQL Injection
Joomla! Component com_awdwall 1.5.4 - Local File Inclusion / SQL Injection
Joomla! Component AWDwall 1.5.4 - Local File Inclusion / SQL Injection
Joomla! Component 'com_osproperty' 2.0.2 - Unrestricted Arbitrary File Upload
Joomla! Component com_osproperty 2.0.2 - Unrestricted Arbitrary File Upload
Horde 3.3.5 - Administration Interface admin/PHPshell.php PATH_INFO Parameter Cross-Site Scripting
Horde 3.3.5 - Cross-Site Scripting
Joomla! Component Joomloc-CAT 4.1.3 - 'ville' Parameter SQL Injection
Joomla! Component Joomloc-Lite 1.3.2 - 'site_id' Parameter SQL Injection
Joomla! Component JomWALL 4.0 - 'wuid' Parameter SQL Injection
Joomla! Component OS Property 3.0.8 - SQL Injection
Joomla! Component EShop 2.5.1 - 'id' Parameter SQL Injection
Joomla! Component OS Services Booking 2.5.1 - SQL Injection
Joomla! Component Room Management 1.0 - SQL Injection
Joomla! Component Bazaar Platform 3.0 - SQL Injection
Joomla! Component Google Map Store Locator 4.4 - SQL Injection
Joomla! Component Most Wanted Real Estate 1.1.0 - SQL Injection
NETGEAR DGN2200v1/v2/v3/v4 - 'ping.cgi' Remote Command Execution
Sawmill Enterprise 8.7.9 - Authentication Bypass
PHPShell 2.4 - Session Fixation
2017-02-20 05:01:17 +00:00
Offensive Security
2d72a9c8b9
DB: 2017-02-18
...
4 new exploits
Netgear WGR614v9 Wireless Router - GET Request Denial of Service
Netgear WGR614v9 Wireless Router - Denial of Service
ZABBIX 1.1.2 - Multiple Unspecified Remote Code Execution Vulnerabilities
Zabbix 1.1.2 - Multiple Unspecified Remote Code Execution Vulnerabilities
ZABBIX 1.1x/1.4.x - File Checksum Request Denial of Service
Zabbix 1.1x/1.4.x - File Checksum Request Denial of Service
ZABBIX 1.1.4/1.4.2 - 'daemon_start' Privilege Escalation
Zabbix 1.1.4/1.4.2 - 'daemon_start' Privilege Escalation
Windows x86 - Protect Process Shellcode (229 bytes)
Qwerty CMS - 'id' SQL Injection
Qwerty CMS - 'id' Parameter SQL Injection
Golabi CMS - Remote File Inclusion
Golabi CMS 1.0 - Remote File Inclusion
blogman 0.45 - Multiple Vulnerabilities
EZ-Blog 1b - Delete All Posts / SQL Injection
Blogman 0.45 - Multiple Vulnerabilities
EZ-Blog beta1 - Delete All Posts / SQL Injection
Access2asp - imageLibrary - (ASP) Arbitrary File Upload
Access2asp - imageLibrary - Arbitrary File Upload
Joomla! Component com_digistore - 'pid' Blind SQL Injection
Joomla! Component com_digistore - 'pid' Parameter Blind SQL Injection
EZ-Blog Beta2 - (category) SQL Injection
EZ-Blog Beta2 - 'category' Parameter SQL Injection
Joomla! Component Team Display 1.2.1 - 'filter_category' Parameter SQL Injection
Joomla! Component Groovy Gallery 1.0.0 - SQL Injection
Joomla! Component WMT Content Timeline 1.0 - 'id' Parameter SQL Injection
2017-02-18 05:01:17 +00:00
Offensive Security
2f2ccec5c2
DB: 2017-02-17
...
8 new exploits
Linux - Dual/Multi mode Bind Shell Shellcode (156 bytes)
Joomla! Component 'com_spidercalendar' - SQL Injection
Joomla! Component Spider Calendar - SQL Injection
Joomla! Component 'com_spidercatalog' - 'Product_ID' Parameter SQL Injection
Joomla! Component Spider Catalog 1.1 - 'Product_ID' Parameter SQL Injection
Joomla! Component 'com_spidercalendar' - 'date' Parameter Blind SQL Injection
Joomla! Component Spider Calendar - 'date' Parameter Blind SQL Injection
Joomla! Component 'com_spidercalendar' 3.2.6 - SQL Injection
Joomla! Component Spider Calendar 3.2.6 - SQL Injection
Joomla! Component 'com_spidercontacts' 1.3.6 - 'contacts_id' Parameter SQL Injection
Joomla! Component Spider Contacts 1.3.6 - 'contacts_id' Parameter SQL Injection
Joomla! Component 'com_spiderfaq' - SQL Injection
Joomla! Component Spider FAQ - SQL Injection
Joomla! Component Spider Calendar Lite 3.2.16 - SQL Injection
Joomla! Component Spider Catalog Lite 1.8.10 - SQL Injection
Joomla! Component Spider Facebook 1.6.1 - SQL Injection
Joomla! Component Spider FAQ Lite 1.3.1 - SQL Injection
WordPress Plugin Corner Ad 1.0.7 - Cross-Site Scripting
dotCMS 3.6.1 - Blind Boolean SQL Injection
Joomla! Component JEmbedAll 1.4 - SQL Injection
2017-02-17 05:01:19 +00:00
Offensive Security
d9f5d919c6
DB: 2017-02-16
...
10 new exploits
Microsoft Windows gdi32.dll - EMR_SETDIBITSTODEVICE Heap-Based Out-of-Bounds Reads / Memory Disclosure
NVIDIA Driver 375.70 - DxgkDdiEscape 0x100008b Out-of-Bounds Read/Write
NVIDIA Driver 375.70 - Buffer Overflow in Command Buffer Submission
GOM Player 2.3.10.5266 - '.fpx' Denial of Service
Cisco ASA - WebVPN CIFS Handling Buffer Overflow
OpenText Documentum D2 - Remote Code Execution
Geutebruck 5.02024 G-Cam/EFD-2250 - Remote Command Execution (Metasploit)
Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 - Multiple Vulnerabilities
Joomla! Component JoomBlog 1.3.1 - SQL Injection
Joomla! Component JSP Store Locator 2.2 - 'id' Parameter SQL Injection
2017-02-16 05:01:17 +00:00
Offensive Security
2f4b2745b1
DB: 2017-02-15
...
11 new exploits
Linux Kernel 3.10.0 (CentOS7) - Denial of Service
LG G4 - lgdrmserver Binder Service Multiple Race Conditions
LG G4 - lghashstorageserver Directory Traversal
LG G4 - Touchscreen Driver write_log Kernel Read/Write
Google Android - Inter-process munmap in android.util.MemoryIntArray
Google Android - android.util.MemoryIntArray Ashmem Race Conditions
Microsoft Edge - TypedArray.sort Use-After-Free (MS16-145)
ShadeYouVPN Client 2.0.1.11 - Privilege Escalation
ntfs-3g - Unsanitized modprobe Environment Privilege Escalation
MLdonkey 2.9.7 - HTTP DOUBLE SLASH Arbitrary File Disclosure
MLdonkey 2.9.7 - Arbitrary File Disclosure
Mldonkey 2.5 -4 - Web Interface Error Message Cross-Site Scripting
MLdonkey 2.5-4 - Cross-Site Scripting
Piwik 2.14.0 / 2.16.0 / 2.17.1 / 3.0.1 - Superuser Plugin Upload (Metasploit)
Joomla! Component NeoRecruit 1.4 - 'id' SQL Injection
Joomla! Component NeoRecruit 1.4 - 'id' Parameter SQL Injection
taifajobs 1.0 - (jobid) SQL Injection
taifajobs 1.0 - 'jobid' Parameter SQL Injection
Pyrophobia 2.1.3.1 - modules/out.php id Parameter Cross-Site Scripting
Pyrophobia 2.1.3.1 - admin/index.php Multiple Parameter Traversal Arbitrary File Access
Pyrophobia 2.1.3.1 - Cross-Site Scripting
Pyrophobia 2.1.3.1 - Traversal Arbitrary File Access
Itech B2B Script 4.29 - Multiple Vulnerabilities
2017-02-15 05:01:16 +00:00
Offensive Security
d548da5f4f
DB: 2017-02-14
...
20 new exploits
Nokia N95-8 - browser (setAttributeNode) Method Crash
Nokia N95-8 browser - 'setAttributeNode' Method Crash
Got All Media 7.0.0.3 - (t00t) Remote Denial of Service
Got All Media 7.0.0.3 - Remote Denial of Service
GeoVision Digital Video Surveillance System - (geohttpserver) DT
GeoVision Digital Video Surveillance System 8.2 - Arbitrary File Disclosure
pHNews alpha 1 - (templates_dir) Remote Code Execution
pHNews alpha 1 - 'templates_dir' Parameter Remote Code Execution
Bloggeruniverse 2.0 Beta - 'editcomments.php id' SQL Injection
Den Dating 9.01 - 'searchmatch.php' SQL Injection
InselPhoto 1.1 - (query) SQL Injection
PHP Krazy Image Host Script 1.01 - 'viewer.php id' SQL Injection
Bloggeruniverse 2.0 Beta - 'id' Parameter SQL Injection
Den Dating 9.01 - 'txtlookgender' Parameter SQL Injection
InselPhoto 1.1 - 'query' Parameter SQL Injection
PHP Krazy Image Host Script 1.01 - 'id' Parameter SQL Injection
Vlinks 1.1.6 - 'id' SQL Injection
Vlinks 1.1.6 - 'id' Parameter SQL Injection
CmsFaethon 2.2.0 - info.php item SQL Command Injection
InselPhoto 1.1 - Persistent Cross-Site Scripting
CmsFaethon 2.2.0 - 'item' Parameter SQL Injection
InselPhoto 1.1 - Cross-Site Scripting
SAS Hotel Management System - 'myhotel_info.asp' SQL Injection
YACS CMS 8.11 - update_trailer.php Remote File Inclusion
SAS Hotel Management System - 'id' Parameter SQL Injection
YACS CMS 8.11 - 'update_trailer.php' Remote File Inclusion
pHNews Alpha 1 - 'header.php mod' SQL Injection
pHNews Alpha 1 - 'mod' Parameter SQL Injection
Novaboard 1.0.1 - (message) Persistent Cross-Site Scripting
Novaboard 1.0.1 - Cross-Site Scripting
Joomla! Component JE Quiz - Blind SQL Injection
Joomla! Component JE Quiz - 'eid' Parameter Blind SQL Injection
SAS Hotel Management System - user_login.asp SQL Injection
SAS Hotel Management System - 'notfound' Parameter SQL Injection
JE Messenger 1.0 - Arbitrary File Upload
Joomla! Component JE Messenger 1.0 - Arbitrary File Upload
Joomla! Component 'com_jeauto' - Local File Inclusion
Joomla! Component JE Auto - Local File Inclusion
vlinks 2.0.3 - 'site.php id Parameter' SQL Injection
Vlinks 2.0.3 - 'id' Parameter SQL Injection
Yacs CMS 10.5.27 - 'context[path_to_root]' Parameter Remote File Inclusion
YACS CMS 10.5.27 - 'context[path_to_root]' Parameter Remote File Inclusion
Joomla! Component Soccer Bet 4.1.5 - 'userid' Parameter SQL Injection
PHP Marketplace Script - SQL Injection
Joomla! Component JE Classify Ads 1.2 - 'pro_id' Parameter SQL Injection
Joomla! Component JE Gallery 1.3 - 'photo_id' Parameter SQL Injection
Joomla! Component JE Directory 1.7 - 'ditemid' Parameter SQL Injection
Joomla! Component JE QuoteForm - 'Itemid' Parameter SQL Injection
Joomla! Component JE Property Finder 1.6.3 - SQL Injection
Joomla! Component JE Tour 2.0 - SQL Injection
Joomla! Component JE Video Rate 1.0 - SQL Injection
Joomla! Component JE auction 1.6 - 'eid' Parameter SQL Injection
Joomla! Component JE Auto 1.5 - 'd_itemid' Parameter SQL Injection
Joomla! Component JE Awd Song 1.8 - SQL Injection
Joomla! Component Hbooking 1.9.9 - 'h_id' Parameter SQL Injection
Joomla! Component JE Quiz 2.3 - SQL Injection
Joomla! Component JE Grid Folio - 'id' Parameter SQL Injection
Joomla! Component JE K2 Multiple Form Story 1.3 - 'Itemid' Parameter SQL Injection
Joomla! Component JE Form Creator 1.8 - 'Itemid' Parameter SQL Injection
Joomla! Component JE Portfolio Creator 1.2 - 'd_itemid' Parameter SQL Injection
Joomla! Component JE Ticket System 1.2 - SQL Injection
Joomla! Component JE Messanger - SQL Injection
2017-02-14 05:01:17 +00:00
Offensive Security
8b6bfd7f93
DB: 2017-02-13
...
19 new exploits
Cimetrics BACstac 6.2f - Privilege Escalation
Cimetrics BACnet Explorer 4.0 - XML External Entity Injection
SonicDICOM PACS 2.3.2 - Cross-Site Scripting
SonicDICOM PACS 2.3.2 - Cross-Site Request Forgery (Add Admin)
SonicDICOM PACS 2.3.2 - Privilege Escalation
Kodi 17.1 - Arbitrary File Disclosure
WhizBiz 1.9 - SQL Injection
TI Online Examination System 2.0 - SQL Injection
Viavi Real Estate - SQL Injection
Viavi Movie Review - 'id' Parameter SQL Injection
Viavi Product Review - 'id' Parameter SQL Injection
Quadz School Management System 3.1 - 'uisd' Parameter SQL Injection
Domains & Hostings Manager PRO 3.0 - 'entries' Parameter SQL Injection
Joomla! Component onisPetitions 2.5 - 'tag' Parameter SQL Injection
Joomla! Component onisQuotes 2.5 - 'tag' Parameter SQL Injection
Joomla! Component onisMusic 2 - 'tag' Parameter SQL Injection
Joomla! Component Sponsor Wall 7.0 - 'wallid' Parameter SQL Injection
Joomla! Component Vik Booking 1.7 - SQL Injection
Joomla! Component Soccer Bet 4.1.5 - 'cat' Parameter SQL Injection
2017-02-13 05:01:18 +00:00
Offensive Security
187fb60098
DB: 2017-02-12
...
1 new exploits
WordPress 4.7.0/4.7.1 Plugin Insert PHP - PHP Code Injection
2017-02-12 05:01:16 +00:00
Offensive Security
dcc7720ad6
DB: 2017-02-11
...
18 new exploits
Microsoft Windows 7 < 10 / Server 2008 < 2012 (x86/x64) - Privilege Escalation (MS16-032) (PowerShell)
Microsoft Windows 7 < 10 / Server 2008 < 2012 R2 (x86/x64) - Privilege Escalation (MS16-032) (PowerShell)
HP Smart Storage Administrator 2.30.6.0 - Remote Command Injection (Metasploit)
F5 BIG-IP SSL Virtual Server - Memory Disclosure
CMS Lite 1.3.1 - SQL Injection
Tiger Post 3.0.1 - SQL Injection
Gram Post 1.0 - SQL Injection
Youtube Analytics Multi Channel 3.0 - SQL Injection
Collabo - Arbitrary File Download
Takas Classified 1.1 - SQL Injection
Zigaform - SQL Injection
Multilanguage Estate Agency Pro 1.2 - SQL Injection
QWIKIA 1.1.1 - SQL Injection
Automated Job Portal Script - SQL Injection
CLUB-8 EMS - SQL Injection
Uploadr - SQL Injection
CodePaul ClipMass - SQL Injection
Video Subscription - SQL Injection
D-link DIR-600M - Cross-Site Request Forgery
HotelCMS with Booking Engine - SQL Injection
2017-02-11 05:01:16 +00:00
Offensive Security
a6133048b5
DB: 2017-02-10
...
6 new exploits
Mobiketa 3.5 - SQL Injection
Sendroid 5.2 - SQL Injection
Fome SMS Portal 2.0 - SQL Injection
SOA School Management - SQL Injection
Client Expert 1.0.1 - SQL Injection
EXAMPLO - SQL Injection
2017-02-10 05:01:16 +00:00
Offensive Security
d1a0e8f9fd
DB: 2017-02-09
...
3 new exploits
Zookeeper 3.5.2 - Denial of Service
Linux/x86 - Reverse TCP Alphanumeric Staged Shellcode (103 bytes)
YapBB 1.2 - (forumID) Blind SQL Injection
YapBB 1.2 - 'forumID' Parameter Blind SQL Injection
ClearBudget 0.6.1 - (Misspelled htaccess) Insecure DD
ClearBudget 0.6.1 - Insecure Database Download
phpYabs 0.1.2 - (Azione) Remote File Inclusion
phpYabs 0.1.2 - 'Azione' Parameter Remote File Inclusion
IF-CMS 2.0 - 'frame.php id' Blind SQL Injection
IF-CMS 2.0 - 'id' Parameter Blind SQL Injection
BusinessSpace 1.2 - 'id' SQL Injection
A Better Member-Based ASP Photo Gallery - 'entry' SQL Injection
BusinessSpace 1.2 - 'id' Parameter SQL Injection
A Better Member-Based ASP Photo Gallery - 'entry' Parameter SQL Injection
FlexCMS - (catId) SQL Injection
FlexCMS 2.5 - 'catId' Parameter SQL Injection
Thyme 1.3 - (export_to) Local File Inclusion
Papoo CMS 3.x - (pfadhier) Local File Inclusion
q-news 2.0 - Remote Command Execution
Potato News 1.0.0 - (user) Local File Inclusion
Thyme 1.3 - 'export_to' Parameter Local File Inclusion
Papoo CMS 3.x - 'pfadhier' Parameter Local File Inclusion
Q-News 2.0 - Remote Command Execution
Potato News 1.0.0 - Local File Inclusion
Mynews 0_10 - Authentication Bypass
Mynews 0.10 - Authentication Bypass
Muviko Video CMS - SQL Injection
Multi Outlets POS 3.1 - 'id' Parameter SQL Injection
2017-02-09 05:01:17 +00:00
Offensive Security
2ff74c7c1b
DB: 2017-02-08
...
9 new exploits
Zookeeper 3.5.2 - Denial of Service
OpenBSD HTTPd < 6.0 - Memory Exhaustion Denial of Service
ThisIsWhyImBroke Clone Script 4.0.0 - 'id' Parameter SQL Injection
Fully Featured News CMS 1.0 - 'id' Parameter SQL Injection
MySQL File Uploader 1.0 - 'id' Parameter SQL Injection
Easy Support Tools 1.0 - 'stt' Parameter SQL Injection
Easy Web Search 3 - 'id' Parameter SQL Injection
FTP Made Easy PRO 1.2 - Arbitrary File Download
Easy File Uploader 1.2 - Arbitrary File Download
Responsive Filemanger <= 9.11.0 - Arbitrary File Disclosure
2017-02-08 05:01:17 +00:00
Offensive Security
ebbc883f34
DB: 2017-02-07
...
13 new exploits
IVPN Client 2.6.1 - Privilege Escalation
Questions and Answers Script 1.1.3 - SQL Injection
Questions and Answers Script 1.1.3 - 'id' Parameter SQL Injection
ThisIsWhyImBroke Clone Script 4.0 - 'id' Parameter SQL Injection
Upworthy Clone Script 1.1.0 - 'id' Parameter SQL Injection
Ultimate Viral Media Script 1.0 - 'id' Parameter SQL Injection
Visual Link Sharing Websites Builder Script 2.1.0 - SQL Injection
ThisIsWhyImBroke Clone Script 4.0.0 - 'id' Parameter SQL Injection
Funny Image and Video Script 2.0.0 - 'id' Parameter SQL Injection
Clone Script Directory Script 1.1.0 - 'cid' Parameter SQL Injection
Viral Pictures and Video Script 2.0.0 - 'id' Parameter SQL Injection
NewsBee CMS - SQL Injection
Web Inspiration Gallery Script 1.0.0 - 'id' Parameter SQL Injection
Viral Fun Facts Sharing Script 1.1.0 - 'id' Parameter SQL Injection
Questions and Answers Script 2.0.0 - 'cid' Parameter SQL Injection
2017-02-07 05:01:16 +00:00
Offensive Security
565aa68240
DB: 2017-02-06
...
4 new exploits
iScripts EasyCreate CMS 2.0 - Multiple Vulnerabilities
iScripts EasyCreate 2.0 - Multiple Vulnerabilities
iScripts AutoHoster - /checktransferstatus.php cmbdomain Parameter SQL Injection
iScripts AutoHoster - /checktransferstatusbck.php cmbdomain Parameter SQL Injection
iScripts AutoHoster - /additionalsettings.php cmbdomain Parameter SQL Injection
iScripts AutoHoster - /payinvoiceothers.php invno Parameter SQL Injection
iScripts AutoHoster - /support/parser/main_smtp.php Unspecified Traversal
iScripts AutoHoster - 'checktransferstatus.php' SQL Injection
iScripts AutoHoster - 'checktransferstatusbck.php' SQL Injection
iScripts AutoHoster - 'additionalsettings.php' SQL Injection
iScripts AutoHoster - 'invno' Parameter SQL Injection
iScripts AutoHoster - 'main_smtp.php' Unspecified Traversal
Job Portal Script 9.11 - Authentication Bypass
Itech Job Portal Script 9.11 - Authentication Bypass
Alstrasoft Template Seller Pro 3.25e - 'tempid' Parameter SQL Injection
Itech Job Portal Script 9.13 - Multiple Vulnerabilities
iScripts AutoHoster 3.0 - 'siteid' Parameter SQL Injection
iScripts EasyCreate 3.2 - 'siteid' Parameter SQL Injection
2017-02-06 05:01:18 +00:00
Offensive Security
e07f1ff036
DB: 2017-02-05
...
7 new exploits
Debian 9 ntfs-3g - Privilege Escalation
ntfs-3g (Debian 9) - Privilege Escalation
Alstrasoft EPay Enterprise 5.17 - SQL Injection
Alstrasoft ProTaxi Enterprise 3.5 - Arbitrary File Upload
Alstrasoft e-Friends 5.12 - SQL Injection
Alstrasoft Video Share Enterprise 4.72 - SQL Injection
Alstrasoft Flippa Clone MarketPlace Script 4.10 - Cross-Site Request Forgery (Add Admin)
Alstrasoft FMyLife Pro 1.02 - Cross-Site Request Forgery (Add Admin)
Alstrasoft Forum Pay Per Post Exchange Script 2.01 - SQL Injection
2017-02-05 05:01:16 +00:00
Offensive Security
9ea9da7098
DB: 2017-02-04
...
6 new exploits
APC UPS 3.7.2 - (apcupsd) Local Denial of Service
APC UPS 3.7.2 - 'apcupsd' Local Denial of Service
Microsoft Windows 7 / Server 2008R2 - Remote Kernel Crash
Microsoft Windows 7 / Server 2008 R2 - Remote Kernel Crash
Debian 9 ntfs-3g - Privilege Escalation
CUPS 1.1.x - .HPGL File Processor Buffer Overflow
CUPS 1.1.x - '.HPGL' File Processor Buffer Overflow
CUPS < 2.0.3 - Remote Command Execution
Netwave IP Camera - Password Disclosure
Itech Multi Vendor Script 6.49 - SQL Injection
Itech Multi Vendor Script 6.49 - 'pl' Parameter SQL Injection
SlimarUSER Management 1.0 - 'id' Parameter SQL Injection
Itech Multi Vendor Script 6.49 - SQL Injection
Zoneminder 1.29 / 1.30 - Cross-Site Scripting / SQL Injection / Session Fixation / Cross-Site Request Forgery
2017-02-04 05:01:18 +00:00
Offensive Security
8290029acb
DB: 2017-02-03
...
12 new exploits
Microsoft Windows 2000 - RPC DCOM Interface Denial of Service
Microsoft Windows Server 2000 - RPC DCOM Interface Denial of Service
Microsoft Windows 2003/XP - Samba Share Resource Exhaustion Exploit
Microsoft Windows Server 2003/XP - Samba Share Resource Exhaustion Exploit
Microsoft Windows 2000/XP - TCP Connection Reset Remote Attack Tool
Microsoft Windows Server 2000/XP - TCP Connection Reset Remote Attack Tool
Microsoft Windows 2003/XP - Remote Denial of Service
Microsoft Windows Server 2003/XP - Remote Denial of Service
Microsoft Windows 2003/XP - IPv6 Remote Denial of Service
Microsoft Windows Server 2003/XP - IPv6 Remote Denial of Service
Microsoft Windows 2000 - UPNP (getdevicelist) Memory Leak Denial of Service
Microsoft Windows Server 2000 - UPNP (getdevicelist) Memory Leak Denial of Service
Microsoft Windows 2003 - '.EOT' Blue Screen of Death Crash
Microsoft Windows Server 2003 - '.EOT' Blue Screen of Death Crash
Microsoft Windows 2000 < 2008 - Embedded OpenType Font Engine Remote Code Execution (MS09-065) (Metasploit)
Microsoft Windows Server 2000 < 2008 - Embedded OpenType Font Engine Remote Code Execution (MS09-065) (Metasploit)
Microsoft Windows 7/2008R2 - SMB Client Trans2 Stack Overflow (MS10-020) (PoC)
Microsoft Windows 7/2008 R2 - SMB Client Trans2 Stack Overflow (MS10-020) (PoC)
Microsoft Windows 2000/XP/2003 - 'win32k.sys' SfnLOGONNOTIFY Local kernel Denial of Service
Microsoft Windows 2000/XP/2003 - 'win32k.sys' SfnINSTRING Local kernel Denial of Service
Microsoft Windows Server 2000/2003/XP - 'win32k.sys' SfnLOGONNOTIFY Local kernel Denial of Service
Microsoft Windows Server 2000/2003/XP - 'win32k.sys' SfnINSTRING Local kernel Denial of Service
Microsoft Windows 2003 - AD Unauthenticated BROWSER ELECTION Remote Heap Overflow
Microsoft Windows Server 2003 - AD Unauthenticated BROWSER ELECTION Remote Heap Overflow
Microsoft Windows 2000/95/98/ME/NT 3.5.x/Enterprise Server 4.0/Terminal Server 4.0/Workstation 4.0 Microsoft DoS Device Name - Denial of Service
Microsoft Windows Server 2000/95/98/ME/NT 3.5.x/Enterprise Server 4.0/Terminal Server 4.0/Workstation 4.0 Microsoft DoS Device Name - Denial of Service
NT 4.0 / Windows 2000 - TCP/IP Printing Service Denial of Service
Microsoft Windows Server 2000/NT 4.0 - TCP/IP Printing Service Denial of Service
Microsoft Windows 2000 - Telnet Server Denial of Service
Microsoft Windows Server 2000 - Telnet Server Denial of Service
Microsoft Windows 2000 - Telnet 'Username' Denial of Service
Microsoft Windows Server 2000 - Telnet 'Username' Denial of Service
Microsoft Windows 2000 - RunAs Service Denial of Service
Microsoft Windows Server 2000 - RunAs Service Denial of Service
Microsoft Windows 2000/NT - Terminal Server Service RDP Denial of Service
Microsoft Windows Server 2000/NT - Terminal Server Service RDP Denial of Service
Microsoft Windows 2000/XP - GDI Denial of Service
Microsoft Windows Server 2000/XP - GDI Denial of Service
Microsoft Windows 2000 - Internet Key Exchange Denial of Service (1)
Microsoft Windows 2000 - Internet Key Exchange Denial of Service (2)
Microsoft Windows Server 2000 - Internet Key Exchange Denial of Service (1)
Microsoft Windows Server 2000 - Internet Key Exchange Denial of Service (2)
Microsoft Windows 2000/NT 4 - TCP Stack Denial of Service (1)
Microsoft Windows 2000/NT 4 - TCP Stack Denial of Service (2)
Microsoft Windows Server 2000/NT 4 - TCP Stack Denial of Service (1)
Microsoft Windows Server 2000/NT 4 - TCP Stack Denial of Service (2)
Microsoft Windows 2000 - Lanman Denial of Service (1)
Microsoft Windows 2000 - Lanman Denial of Service (2)
Microsoft Windows Server 2000 - Lanman Denial of Service (1)
Microsoft Windows Server 2000 - Lanman Denial of Service (2)
Microsoft Windows 2000/NT 4/XP - Network Share Provider SMB Request Buffer Overflow (1)
Microsoft Windows 2000/NT 4/XP - Network Share Provider SMB Request Buffer Overflow (2)
Microsoft Windows Server 2000/NT 4/XP - Network Share Provider SMB Request Buffer Overflow (1)
Microsoft Windows Server 2000/NT 4/XP - Network Share Provider SMB Request Buffer Overflow (2)
Microsoft Windows 2000/2003/XP - Graphical Device Interface Library Denial of Service
Microsoft Windows Server 2000/2003/XP - Graphical Device Interface Library Denial of Service
Microsoft Windows 2000/XP - Internet Protocol Validation Remote Code Execution (1)
Microsoft Windows Server 2000/XP - Internet Protocol Validation Remote Code Execution (1)
Microsoft Windows 2000/2003/XP - MSDTC TIP Denial of Service (MS05-051)
Microsoft Windows Server 2000/2003/XP - MSDTC TIP Denial of Service (MS05-051)
Microsoft Windows 2000/2003/XP - CreateRemoteThread Local Denial of Service
Microsoft Windows Server 2000/2003/XP - CreateRemoteThread Local Denial of Service
Microsoft Windows 2000/XP - Registry Access Local Denial of Service
Microsoft Windows Server 2000/XP - Registry Access Local Denial of Service
Microsoft Windows 2000 - Multiple COM Object Instantiation Code Execution Vulnerabilities
Microsoft Windows Server 2000 - Multiple COM Object Instantiation Code Execution Vulnerabilities
Microsoft Windows XP/2003 - Explorer .WMF File Handling Denial of Service
Microsoft Windows Server 2003/XP - Explorer .WMF File Handling Denial of Service
Microsoft Windows 2003/Vista - 'UnhookWindowsHookEx' Local Denial of Service
Microsoft Windows Server 2003/Vista - 'UnhookWindowsHookEx' Local Denial of Service
Microsoft Windows 10 - SMBv3 Tree Connect (PoC)
Google Android - 'rkp_set_init_page_ro' RKP Memory Corruption
Microsoft Windows 2003 - Token Kidnapping Local Exploit (PoC)
Microsoft Windows 2003/XP - 'afd.sys' Privilege Escalation (K-plugin) (MS08-066)
Microsoft Windows Server 2003 - Token Kidnapping Local Exploit (PoC)
Microsoft Windows Server 2003/XP - 'afd.sys' Privilege Escalation (K-plugin) (MS08-066)
Microsoft Windows NT/2000/XP/2003/Vista/2008/7 - User Mode to Ring Escalation (KiTrap0D) (MS10-015)
Microsoft Windows NT/2000/2003/2008/XP/Vista/7 - User Mode to Ring Escalation (KiTrap0D) (MS10-015)
Microsoft Windows XP/2003 - 'afd.sys' Privilege Escalation (MS11-080)
Microsoft Windows Server 2003/XP - 'afd.sys' Privilege Escalation (MS11-080)
Microsoft Windows 2000/95/98/NT 4.0 - Long Filename Extension
Microsoft Windows Server 2000/95/98/NT 4.0 - Long Filename Extension
Microsoft Windows 2000 - Named Pipes Predictability
Microsoft Windows Server 2000 - Named Pipes Predictability
Microsoft Windows 2000 - Still Image Service Privilege Escalation
Microsoft Windows Server 2000 - Still Image Service Privilege Escalation
Microsoft Windows 2000/NT 4 - DLL Search Path
Microsoft Windows Server 2000/NT 4 - DLL Search Path
Microsoft Windows 2000 - Debug Registers
Microsoft Windows Server 2000 - Debug Registers
Microsoft Windows 2000 - RunAs Service Named Pipe Hijacking
Microsoft Windows Server 2000 - RunAs Service Named Pipe Hijacking
Microsoft Windows 2000/NT 4 - NTFS File Hiding
Microsoft Windows Server 2000/NT 4 - NTFS File Hiding
Microsoft Windows 2000 / NT 4.0 - Process Handle Local Privilege Elevation
Microsoft Windows Server 2000/NT 4.0 - Process Handle Local Privilege Elevation
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (1)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (2)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (3)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (4)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (5)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (6)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (7)
Microsoft Windows 2000/NT 4/XP - Window Message Subsystem Design Error (8)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (1)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (2)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (3)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (4)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (5)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (6)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (7)
Microsoft Windows Server 2000/NT 4/XP - Window Message Subsystem Design Error (8)
Microsoft Windows 2000/XP/NT 4 - NetDDE Privilege Escalation (1)
Microsoft Windows 2000/XP/NT 4 - NetDDE Privilege Escalation (2)
Microsoft Windows Server 2000/NT 4/XP - NetDDE Privilege Escalation (1)
Microsoft Windows Server 2000/NT 4/XP - NetDDE Privilege Escalation (2)
Microsoft Windows 2000 - Help Facility .CNT File :Link Buffer Overflow
Microsoft Windows Server 2000 - Help Facility .CNT File :Link Buffer Overflow
Microsoft Windows 2000 - RegEdit.exe Registry Key Value Buffer Overflow
Microsoft Windows Server 2000 - RegEdit.exe Registry Key Value Buffer Overflow
Microsoft Windows 2000 - CreateFile API Named Pipe Privilege Escalation (1)
Microsoft Windows 2000 - CreateFile API Named Pipe Privilege Escalation (2)
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (1)
Microsoft Windows Server 2000 - CreateFile API Named Pipe Privilege Escalation (2)
Microsoft Windows 2000/NT 4 - Local Descriptor Table Privilege Escalation (MS04-011)
Microsoft Windows Server 2000/NT 4 - Local Descriptor Table Privilege Escalation (MS04-011)
Microsoft Windows 2000/NT 4 - POSIX Subsystem Buffer Overflow Privilege Escalation (MS04-020)
Microsoft Windows Server 2000/NT 4 - POSIX Subsystem Buffer Overflow Privilege Escalation (MS04-020)
Microsoft Windows NT/2000/XP/2003/Vista/2008/7/8 - Local Ring Exploit (EPATHOBJ)
Microsoft Windows NT/2000/2003/2008/XP/Vista/7/8 - Local Ring Exploit (EPATHOBJ)
Microsoft Windows 2000/2003/XP - Keyboard Event Privilege Escalation
Microsoft Windows Server 2000/2003/XP - Keyboard Event Privilege Escalation
Microsoft Windows 2003/XP - ReadDirectoryChangesW Information Disclosure
Microsoft Windows Server 2003/XP - ReadDirectoryChangesW Information Disclosure
Microsoft Windows XP/2003/Vista/2008 - WMI Service Isolation Privilege Escalation
Microsoft Windows XP/2003 - RPCSS Service Isolation Privilege Escalation
Microsoft Windows Server 2003/2008/XP/Vista - WMI Service Isolation Privilege Escalation
Microsoft Windows Server 2003/XP - RPCSS Service Isolation Privilege Escalation
Microsoft Windows 2000/XP/2003 - Desktop Wall Paper System Parameter Privilege Escalation
Microsoft Windows Server 2000/2003/XP - Desktop Wall Paper System Parameter Privilege Escalation
Microsoft Windows 2000/XP/2003/Vista - Double-Free Memory Corruption Privilege Escalation
Microsoft Windows Server 2000/2003/XP/Vista - Double-Free Memory Corruption Privilege Escalation
Ghostscript 9.20 - 'Filename' Command Execution
Microsoft Windows 2000 - RSVP Server Authority Hijacking (PoC)
Microsoft Windows Server 2000 - RSVP Server Authority Hijacking (PoC)
Microsoft Windows 2000/XP - RPC Remote (Non Exec Memory) Exploit
Microsoft Windows Server 2000/XP - RPC Remote (Non Exec Memory) Exploit
Microsoft Windows 2000 SP1/SP2 - isapi .printer Extension Overflow (1)
Microsoft Windows 2000 SP1/SP2 - isapi .printer Extension Overflow (2)
Microsoft Windows Server 2000 SP1/SP2 - isapi .printer Extension Overflow (1)
Microsoft Windows Server 2000 SP1/SP2 - isapi .printer Extension Overflow (2)
Microsoft Windows 2000 - WINS Remote Code Execution
Microsoft Windows Server 2000 - WINS Remote Code Execution
Microsoft Windows XP/2003 - Metafile Escape() Code Execution (Metasploit)
Microsoft Windows Server 2003/XP - Metafile Escape() Code Execution (Metasploit)
WarFTP 1.65 (Windows 2000 SP4) - (USER) Remote Buffer Overflow (Python)
WarFTP 1.65 (Windows 2000 SP4) - (USER) Remote Buffer Overflow (Perl)
WarFTP 1.65 (Windows 2000 SP4) - 'USER' Remote Buffer Overflow (Python)
WarFTP 1.65 (Windows 2000 SP4) - 'USER' Remote Buffer Overflow (Perl)
Microsoft Windows 2000 SP4 - DNS RPC Remote Buffer Overflow
Microsoft Windows Server 2000 SP4 - DNS RPC Remote Buffer Overflow
Microsoft IIS 5.0/6.0 FTP Server - Remote Stack Overflow (Windows 2000)
Microsoft IIS 5.0/6.0 FTP Server (Windows 2000) - Remote Stack Overflow
Microsoft Windows XP/2003/Vista - Metafile Escape() SetAbortProc Code Execution (MS06-001) (Metasploit)
Microsoft Windows Server 2003/XP/Vista - Metafile Escape() SetAbortProc Code Execution (MS06-001) (Metasploit)
Microsoft Internet Explorer 5 (Windows 2000/95/98/NT 4) - XML HTTP Redirect
Microsoft Internet Explorer 5 (Windows 95/98/2000/NT 4) - XML HTTP Redirect
Microsoft Index Server 2.0 / Indexing Services (Windows 2000) - Directory Traversal
Microsoft Index Server 2.0 / Indexing Service (Windows 2000) - Directory Traversal
Cat Soft Serv-U FTP Server 2.5/a/b (Windows 2000/95/98/NT 4.0) - Shortcut Exploit
Cat Soft Serv-U FTP Server 2.5/a/b (Windows 95/98/2000/NT 4.0) - Shortcut Exploit
Microsoft Windows 2000 - Remote CPU-overload
Microsoft Windows Server 2000 - Remote CPU-overload
Microsoft Windows 2000 - telnet.exe NTLM Authentication
Microsoft Windows Server 2000 - telnet.exe NTLM Authentication
Microsoft Indexing Services (Windows 2000/NT 4.0) - '.htw' Cross-Site Scripting
Microsoft Indexing Service (Windows 2000/NT 4.0) - '.htw' Cross-Site Scripting
Microsoft Indexing Services (Windows 2000) - File Verification
Microsoft Indexing Service (Windows 2000) - File Verification
SurfControl SuperScout WebFilter for windows 2000 - File Disclosure
SurfControl SuperScout WebFilter for windows 2000 - SQL Injection
Microsoft Windows 2000/XP/NT 4 - Help Facility ActiveX Control Buffer Overflow
SurfControl SuperScout WebFilter for Windows 2000 - File Disclosure
SurfControl SuperScout WebFilter for Windows 2000 - SQL Injection
Microsoft Windows Server 2000/NT 4/XP - Help Facility ActiveX Control Buffer Overflow
Microsoft Windows 2000 - Active Directory Remote Stack Overflow
Microsoft Windows Server 2000 - Active Directory Remote Stack Overflow
Microsoft Windows 2000/NT 4 Media Services - 'nsiislog.dll' Remote Buffer Overflow
Microsoft Windows Server 2000/NT 4 Media Services - 'nsiislog.dll' Remote Buffer Overflow
Microsoft Windows 2000 - Subnet Bandwidth Manager RSVP Server Authority Hijacking
Microsoft Windows Server 2000 - Subnet Bandwidth Manager RSVP Server Authority Hijacking
Microsoft Windows 2000/2003/XP - winhlp32 Phrase Integer Overflow
Microsoft Windows 2000/2003/XP - winhlp32 Phrase Heap Overflow
Microsoft Windows Server 2000/2003/XP - winhlp32 Phrase Integer Overflow
Microsoft Windows Server 2000/2003/XP - winhlp32 Phrase Heap Overflow
Microsoft Windows 2000/XP - Internet Protocol Validation Remote Code Execution (2)
Microsoft Windows Server 2000/XP - Internet Protocol Validation Remote Code Execution (2)
Microsoft Windows 2000/2003 - Recursive DNS Spoofing (1)
Microsoft Windows 2000/2003 - Recursive DNS Spoofing (2)
Microsoft Windows Server 2000/2003 - Recursive DNS Spoofing (1)
Microsoft Windows Server 2000/2003 - Recursive DNS Spoofing (2)
Linux - Multi/Dual mode Reverse Shell Shellcode (129 bytes)
Travel Portal Script 9.33 - SQL Injection
Movie Portal Script 7.35 - SQL Injection
Itech Travel Portal Script 9.33 - SQL Injection
Itech Movie Portal Script 7.35 - SQL Injection
Auction Script 6.49 - SQL Injection
Itech Auction Script 6.49 - 'mcid' Parameter SQL Injection
Itech News Portal Script 6.28 - SQL Injection
Itech News Portal Script 6.28 - 'inf' Parameter SQL Injection
Video Sharing Script 4.94 - SQL Injection
Itech Video Sharing Script 4.94 - 'v' Parameter SQL Injection
Itech Classifieds Script 7.27 - 'pid' Parameter SQL Injection
Itech Classifieds Script 7.27 - SQL Injection
Video Sharing Script 4.94 - 'uid' Parameter SQL Injection
Itech Video Sharing Script 4.94 - SQL Injection
WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (Python)
WordPress 4.7.0/4.7.1 - Unauthenticated Content Injection (Ruby)
Itech Travel Portal Script 9.35 - SQL Injection
Property Listing Script - 'propid' Parameter Blind SQL Injection
Itech Inventory Management Software 3.77 - SQL Injection
Itech Movie Portal Script 7.37 - SQL Injection
Itech News Portal Script 6.28 - 'sc' Parameter SQL Injection
Itech Auction Script 6.49 - 'pid' Parameter SQL Injection
2017-02-03 05:01:17 +00:00
Offensive Security
893d590404
DB: 2017-02-02
...
12 new exploits
PHP 5.2.0 (Windows x86) - (PHP_win32sti) Local Buffer Overflow
PHP 5.2.0 (Windows x86) - 'PHP_win32sti' Local Buffer Overflow
Apple Safari 4.0.3 (Windows x86) - CSS Remote Denial of Service
Apple Safari 4.0.3 (Windows x86) - 'CSS' Remote Denial of Service (1)
PHP 5.3.0 - getopt() Denial of Service
PHP 5.3.0 - 'getopt()' Denial of Service
Apple Safari 4.0.3 (Windows x86) - CSS Remote Denial of Service
Apple Safari 4.0.3 (Windows x86) - 'CSS' Remote Denial of Service (2)
PHP 4.3.x/5.0 - openlog() Buffer Overflow
PHP 4.3.x/5.0 - 'openlog()' Buffer Overflow
Google Android - 'cfp_ropp_new_key_reenc' and 'cfp_ropp_new_key' RKP Memory Corruption
Google Android - Unprotected MSRs in EL1 RKP Privilege Escalation
Apple WebKit - 'HTMLFormElement::reset()' Use-After Free
Google Chrome - 'HTMLKeygenElement::shadowSelect()' Type Confusion
Apple WebKit - 'HTMLKeygenElement' Type Confusion
Apple WebKit - Type Confusion in RenderBox with Accessibility Enabled
Google Android - RKP Information Disclosure via s2-remapping Physical Ranges
QNAP NVR/NAS - Buffer Overflow
Linux Kernel 2.6 (Debian 4.0 / Ubuntu / Gentoo) - UDEV < 1.4.1 Privilege Escalation (1)
Linux Kernel 2.6 (Debian 4.0 / Ubuntu / Gentoo) UDEV < 1.4.1 - Privilege Escalation (1)
Linux Kernel 2.6 (Gentoo / Ubuntu 8.10/9.04) - UDEV < 141 Privilege Escalation (2)
Linux Kernel 2.6 (Gentoo / Ubuntu 8.10/9.04) UDEV < 1.4.1 - Privilege Escalation (2)
PHP 5.2.9 (Windows x86) - Local Safemod Bypass Exploit
PHP 5.2.9 (Windows x86) - Local Safemod Bypass
Linux udev - Netlink Privilege Escalation (Metasploit)
Linux Kernel UDEV < 1.4.1 - Netlink Privilege Escalation (Metasploit)
Google Android - RKP EL1 Code Loading Bypass
Linux/CRISv32 - Axis Communication Connect Back Shellcode (189 bytes)
Syntax Desktop 2.7 - (synTarget) Local File Inclusion
Syntax Desktop 2.7 - 'synTarget' Parameter Local File Inclusion
Joomla! Component JTAG Calendar 6.2.4 - 'search' Parameter SQL Injection
LogoStore - 'query' Parameter SQL Injection
2017-02-02 05:01:18 +00:00
Offensive Security
1a4e6f50a9
DB: 2017-02-01
...
65 new exploits
Quake 3 Engine Client (Windows x86) - CS_ITEms Remote Overflow
Mercur IMAPD 5.00.14 (Windows x86) - Remote Denial of Service
PHP 5.2.0 (Windows x86) - (PHP_win32sti) Local Buffer Overflow
PHP 5.2.0 (Windows x86) - 'PHP_iisfunc.dll' Local Buffer Overflow
32bit FTP (09.04.24) - 'Banner' Remote Buffer Overflow (PoC)
Apple Safari 3.2.3 (Windows x86) - JavaScript (eval) Remote Denial of Service
Apple Safari 4.0.3 (Windows x86) - CSS Remote Denial of Service
Apple Safari 4.0.3 (Windows x86) - CSS Remote Denial of Service
ESET Smart Security 4.2 and NOD32 AntiVirus 4.2 (x32/x64) - LZH archive parsing (PoC)
ESET Smart Security 4.2 and NOD32 AntiVirus 4.2 (x86/x64) - LZH archive parsing (PoC)
Linux Kernel 2.6.x (x64) - Personality Handling Local Denial of Service
VMware Workstations 10.0.0.40273 - 'vmx86.sys' Arbitrary Kernel Read
Samba < 3.6.2 (x86) - Denial of Serviec (PoC)
Adobe Flash - Bad Dereference at 0x23c on Linux x64
Adobe Flash (Linux x64) - Bad Dereference at 0x23c
Linux (x86) - Disable ASLR by Setting the RLIMIT_STACK Resource to Unlimited
Core FTP Server 32-bit Build 587 - Heap Overflow
Windows 10 x86/x64 WLAN AutoConfig - Denial of Service (POC)
Windows 10 (x86/x64) WLAN AutoConfig - Denial of Service (POC)
RedHat 6.2 /usr/bin/rcp - SUID Privilege Escalation
RedHat 6.2 /usr/bin/rcp - 'SUID' Privilege Escalation
Setuid perl - PerlIO_Debug() Root Owned File Creation Privilege Escalation
Setuid perl - 'PerlIO_Debug()' Root Owned File Creation Privilege Escalation
Wireless Tools 26 (IWConfig) - Privilege Escalation (some setuid)
Qpopper 4.0.8 (Linux) - (poppassd) Privilege Escalation
Wireless Tools 26 (IWConfig) - Privilege Escalation
Qpopper 4.0.8 (Linux) - 'poppassd' Privilege Escalation
Navicat Premium 11.2.11 (x64) - Local Database Password Disclosure
Rocks Clusters 4.1 - (umount-loop) Privilege Escalation
Rocks Clusters 4.1 - (mount-loop) Privilege Escalation
Rocks Clusters 4.1 - 'umount-loop' Privilege Escalation
Rocks Clusters 4.1 - 'mount-loop' Privilege Escalation
PrivateTunnel Client 2.7.0 (x64) - Local Credentials Disclosure
Linux Kernel 2.4 / 2.6 (x86-64) - System Call Emulation Privilege Escalation
Postfix 2.6-20080814 - (symlink) Privilege Escalation
Postfix 2.6-20080814 - 'symlink' Privilege Escalation
Oracle Database Vault - ptrace(2) Privilege Escalation
Oracle Database Vault - 'ptrace(2)' Privilege Escalation
Linux Kernel 2.6.24_16-23 / 2.6.27_7-10 / 2.6.28.3 (Ubuntu 8.04/8.10 / Fedora Core 10 x86_64) - set_selection() UTF-8 Off-by-One Local Exploit
Linux Kernel 2.6.24_16-23 / 2.6.27_7-10 / 2.6.28.3 (Ubuntu 8.04/8.10 / Fedora Core 10 x86-64) - set_selection() UTF-8 Off-by-One Local Exploit
Linux Kernel 2.6 < 2.6.19 (White Box 4 / CentOS 4.4/4.5 / Fedora Core 4/5/6 x86) - 'ip_append_data()' Ring0 Privilege Escalation (1)
Linux Kernel < 2.6.36-rc4-git2 (x86-64) - 'ia32syscall' Emulation Privilege Escalation
Linux Kernel 2.6.27 < 2.6.36 (RedHat x86-64) - 'compat' Privilege Escalation
Linux Kernel < 2.6.36-rc4-git2 (x86-64) - 'ia32syscall' Emulation Privilege Escalation
Linux Kernel 2.6.27 < 2.6.36 (RedHat x86-64) - 'compat' Privilege Escalation
GNU C Library 2.x (libc6) - Dynamic Linker LD_AUDIT Arbitrary DSO Load (Privilege Escalation)
GNU C Library 2.x (libc6) - (Dynamic Linker LD_AUDIT Arbitrary DSO Load) Privilege Escalation
Linux Kernel < 2.6.34 (Ubuntu 10.10 x86) - 'CAP_SYS_ADMIN' Privilege Escalation (1)
Free Download Manager - Torrent Parsing Buffer Overflow (Metasploit)
Free Download Manager 3.0 Build 844 - Torrent Parsing Buffer Overflow (Metasploit)
VideoLAN VLC Client (Windows x86) - 'smb://' URI Buffer Overflow (Metasploit)
PolicyKit polkit-1 < 0.101 - Linux Privilege Escalation
PolicyKit polkit-1 < 0.101 - Privilege Escalation
Linux Kernel 2.2.x 2.4.0-test1 (SGI ProPack 1.2/1.3) - Capabilities Privilege Escalation (Sendmail) (1)
Linux Kernel 2.2.x 2.4.0-test1 (SGI ProPack 1.2/1.3) - Capabilities Privilege Escalation (Sendmail 8.10.1) (2)
Linux Kernel 2.2.x 2.4.0-test1 (SGI ProPack 1.2/1.3) - (Sendmail) Capabilities Privilege Escalation(1)
Linux Kernel 2.2.x 2.4.0-test1 (SGI ProPack 1.2/1.3) - (Sendmail 8.10.1) Capabilities Privilege Escalation (2)
QNX RTOS 4.25/6.1 - phgrafxPrivilege Escalation
QNX RTOS 4.25/6.1 - phgrafx-startup Privilege Escalation
QNX RTOS 4.25/6.1 - 'phgrafx' Privilege Escalation
QNX RTOS 4.25/6.1 - 'phgrafx-startup' Privilege Escalation
Dropbox Desktop Client 9.4.49 (x64) - Local Credentials Disclosure
Microsoft Windows 10 10586 (x32/x64) / 8.1 Update 2 - NtLoadKeyEx User Hive Attachment Point Privilege Escalation (MS16-111)
Microsoft Windows 10 10586 (x86/x64) / 8.1 Update 2 - NtLoadKeyEx User Hive Attachment Point Privilege Escalation (MS16-111)
MySQL 3.23.x - mysqld Privilege Escalation
MySQL 3.23.x - 'mysqld' Privilege Escalation
Platform Load Sharing Facility 4/5/6 - EAuth Privilege Escalation
MTools 3.9.x - MFormat Privilege Escalation
Platform Load Sharing Facility 4/5/6 - 'EAuth' Privilege Escalation
MTools 3.9.x - 'MFormat' Privilege Escalation
Linux Kernel < 3.3.x < 3.7.x (Arch Linux x86-64) - 'sock_diag_handlers[]' Privilege Escalation (1)
sudo 1.8.0 < 1.8.3p1 (sudo_debug) - Privilege Escalation + glibc FORTIFY_SOURCE Bypass
sudo 1.8.0 < 1.8.3p1 (sudo_debug) - glibc FORTIFY_SOURCE Bypass + Privilege Escalation
Linux Kernel < 3.8.9 (x86-64) - 'perf_swevent_init' Privilege Escalation (2)
ZABBIX 1.1.4/1.4.2 - daemon_start Privilege Escalation
ZABBIX 1.1.4/1.4.2 - 'daemon_start' Privilege Escalation
Linux Kernel 3.4 < 3.13.2 (Ubuntu 13.04/13.10) - 'CONFIG_X86_X32=y' Privilege Escalation (3)
LogMeIn Client 1.3.2462 (x64) - Local Credentials Disclosure
Systrace 1.x (x64) - Aware Linux Kernel Privilege Escalation
Microsoft Windows - NTUserMessageCall Win32k Kernel Pool Overflow 'schlamperei.x86.dll' (MS13-053) (Metasploit)
Linux Kernel 3.14-rc1 < 3.15-rc4 (x64) - Raw Mode PTY Local Echo Race Condition Privilege Escalation
Linux Kernel 3.2.0-23 / 3.5.0-23 (Ubuntu 12.04/12.04.1/12.04.2 x64) - 'perf_swevent_init' Privilege Escalation (3)
TeamViewer 11.0.65452 (x64) - Local Credentials Disclosure
Linux Kernel 3.13 - Privilege Escalation PoC (SGID)
Linux Kernel 3.13 - (SGID) Privilege Escalation (PoC)
OSSEC 2.8 - hosts.deny Privilege Escalation
OSSEC 2.8 - 'hosts.deny' Privilege Escalation
Ninja Privilege Escalation Detection and Prevention System 0.1.3 - Race Condition
Ninja Privilege Escalation Detection and Prevention System 0.1.3 - Race Condition Privilege Escalation
Linux espfix64 - Privilege Escalation (Nested NMIs Interrupting)
Linux (x86) - Memory Sinkhole Privilege Escalation (PoC)
Linux espfix64 - (Nested NMIs Interrupting) Privilege Escalation
Linux (x86) - Memory Sinkhole Privilege Escalation (PoC)
RHEL 7.0/7.1 - abrt/sosreport Privilege Escalation
RHEL 7.0/7.1 - 'abrt/sosreport' Privilege Escalation
MySQL 5.5.45 (x64) - Local Credentials Disclosure
Linux Kernel 4.4.x (Ubuntu 16.04) - 'double-fdput()' in bpf(BPF_PROG_LOAD) Privilege Escalation
Linux Kernel 4.4.x (Ubuntu 16.04) - 'double-fdput()' bpf(BPF_PROG_LOAD) Privilege Escalation
ACROS Security 0patch 2016.05.19.539 - '0PatchServicex64.exe' Unquoted Service Path Privilege Escalation
Linux Kernel 4.4.0-21 (Ubuntu 16.04 x64) - Netfilter target_offset Out-of-Bounds Privilege Escalation
Microsoft Windows 7 (x32/x64) - Group Policy Privilege Escalation (MS16-072)
Microsoft Windows 7 (x86/x64) - Group Policy Privilege Escalation (MS16-072)
Linux Kernel 2.6.32-rc1 (x86-64) - Register Leak
Linux Kernel 4.4.0 (Ubuntu 14.04/16.04 x86-64) - 'AF_PACKET' Race Condition Privilege Escalation
Microsoft Windows 8.1 (x64) - RGNOBJ Integer Overflow (MS16-098)
Viscosity 1.6.7 - Privilege Escalation
BeroFTPD 1.3.4(1) (Linux/x86) - Remote Code Execution
BeroFTPD 1.3.4(1) (Linux x86) - Remote Code Execution
Solaris /bin/login (SPARC/x86) - Remote Code Execution
gpsdrive 2.09 (x86) - (friendsd2) Remote Format String
PrivateWire Gateway 3.7 (Windows x86) - Remote Buffer Overflow (Metasploit)
dproxy-nexgen (Linux/x86) - Buffer Overflow
dproxy-nexgen (Linux x86) - Buffer Overflow
32bit FTP (09.04.24) - 'CWD Response' Remote Buffer Overflow
32bit FTP (09.04.24) - 'Banner' Remote Buffer Overflow
32bit FTP (09.04.24) - 'CWD Response' Universal Overwrite (SEH)
32bit FTP - 'PASV' Reply Client Remote Overflow (Metasploit)
32bit FTP (09.04.24) - 'CWD Response' Remote Buffer Overflow
32bit FTP (09.04.24) - 'Banner' Remote Buffer Overflow
32bit FTP (09.04.24) - 'CWD Response' Universal Overwrite (SEH)
32bit FTP - 'PASV' Reply Client Remote Overflow (Metasploit)
Oracle 9i XDB (Windows x86) - FTP UNLOCK Overflow (Metasploit)
AASync 2.2.1.0 (Windows x86) - Stack Buffer Overflow 'LIST' (Metasploit)
32bit FTP Client - Stack Buffer Overflow (Metasploit)
Free Download Manager - Remote Control Server Buffer Overflow (Metasploit)
Free Download Manager 2.5 Build 758 - Remote Control Server Buffer Overflow (Metasploit)
Apache (Windows x86) - Chunked Encoding (Metasploit)
PeerCast 0.1216 (Windows x86) - URL Handling Buffer Overflow (Metasploit)
CA CAM (Windows x86) - log_security() Stack Buffer Overflow (Metasploit)
Samba 3.3.12 (Linux/x86) - 'chain_reply' Memory Corruption (Metasploit)
Samba 2.2.8 (Linux x86) - 'trans2open' Overflow (Metasploit)
Samba 3.3.12 (Linux x86) - 'chain_reply' Memory Corruption (Metasploit)
Samba 2.2.8 (Linux x86) - 'trans2open' Overflow (Metasploit)
Samba 2.2.8 (*BSD x86) - 'trans2open' Overflow Exploit (Metasploit)
Webmin 0.x - RPC Function Privilege Escalation
Webmin 0.x - 'RPC' Function Privilege Escalation
Nginx 1.3.9/1.4.0 (x86) - Brute Force Remote Exploit
Nginx 1.4.0 (x64) - (Generic Linux) Remote Exploit
Nginx 1.4.0 (x64) (Generic Linux) - Remote Exploit
technote 7.2 - Remote File Inclusion
Technote 7.2 - Remote File Inclusion
JAWS 0.2/0.3 - 'index.php' gadget Parameter Traversal Arbitrary File Access
JAWS 0.2/0.3 - Cookie Manipulation Authentication Bypass
JAWS 0.2/0.3 - 'index.php' action Parameter Cross-Site Scripting
Jaws 0.2/0.3 - 'gadget' Parameter Traversal Arbitrary File Access
Jaws 0.2/0.3 - Cookie Manipulation Authentication Bypass
Jaws 0.2/0.3 - 'action' Parameter Cross-Site Scripting
JAWS 0.2/0.3/0.4 - ControlPanel.php SQL Injection
Jaws 0.2/0.3/0.4 - ControlPanel.php SQL Injection
JAWS Glossary 0.4/0.5 - Cross-Site Scripting
Jaws Glossary 0.4/0.5 - Cross-Site Scripting
JAWS 0.x - Remote File Inclusion
Jaws 0.x - Remote File Inclusion
FlatNux 2009-03-27 - Multiple Cross-Site Scripting Vulnerabilities
Flatnux 2009-03-27 - Multiple Cross-Site Scripting Vulnerabilities
Multiple Netgear Routers - Password Disclosure
Video Sharing Script 4.94 - 'uid' Parameter SQL Injection
Netman 204 - Backdoor Account / Password Reset
2017-02-01 05:01:19 +00:00
Offensive Security
bf6526a40b
DB: 2017-01-31
...
39 new exploits
OpenSSL 1.1.0 - Remote Client Denial of Service
CDRTools CDRecord 2.0 - Mandrake Privilege Escalation
CDRTools CDRecord 2.0 (Mandrake / Slackware) - Privilege Escalation
RedHat 6.2 /usr/bin/rcp - SUID Privilege Escalation Exploit
RedHat 6.2 /usr/bin/rcp - SUID Privilege Escalation
BitchX 1.0c19 - Privilege Escalation (suid?)
Apache 1.3.31 (mod_include) - Local Buffer Overflow
BitchX 1.0c19 - Privilege Escalation
Apache 1.3.31 mod_include - Local Buffer Overflow
AIX 4.3/5.1 < 5.3 - lsmcode Command Execution Privilege Escalation
AIX 4.3/5.1 < 5.3 - 'lsmcode' Command Execution Privilege Escalation
Debian 2.2 - /usr/bin/pileup Privilege Escalation
Debian 2.2 /usr/bin/pileup - Privilege Escalation
Oracle 10g (Windows x86) - (PROCESS_DUP_HANDLE) Local Privilege Elevation
GIMP 2.2.14 (Windows x86) - '.ras' Download/Execute Buffer Overflow
Notepad++ 4.1 (Windows x86) - '.ruby' File Processing Buffer Overflow
IBM AIX 5.3 sp6 - ftp gets() Privilege Escalation
IBM AIX 5.3 SP6 - FTP gets() Privilege Escalation
IBM AIX 5.3.0 - setlocale() Privilege Escalation
IBM AIX 5.3.0 - 'setlocale()' Privilege Escalation
FreeBSD 6x/7 - protosw kernel Local Privilege Escalation Exploit
FreeBSD 6x/7 protosw Kernel - Privilege Escalation
PHP 5.2.9 (Windows x86) - Local Safemod Bypass Exploit
HTMLDOC 1.9.x-r1629 (Windows x86) - Local .html Buffer Overflow
(Linux Kernel 2.6.34-rc3) ReiserFS (RedHat / Ubuntu 9.10) - xattr Privilege Escalation
(Linux Kernel 2.6.34-rc3) ReiserFS (RedHat / Ubuntu 9.10) - 'xattr' Privilege Escalation
Linux Kernel 4.6.3 - 'Netfilter' Privilege Escalation (Metasploit)
Linux Kernel 4.6.3 (x86) - 'Netfilter' Privilege Escalation (Metasploit)
FreeBSD 6.4 - Netgraph Local Privilege Escalation Exploit
FreeBSD 6.4 - Netgraph Privilege Escalation
PHP 5.4.3 (Windows x86 Polish) - Code Execution
Apache (Mod_Auth_OpenID) - Session Stealing
Apache Mod_Auth_OpenID - Session Stealing
cPanel 5.0 - Openwebmail Privilege Escalation
cPanel 5.0 - 'Openwebmail' Privilege Escalation
Apache 2.0.4x (mod_php) - File Descriptor Leakage (1)
Apache 2.0.4x (mod_php) - File Descriptor Leakage (2)
Apache 2.0.4x mod_php - File Descriptor Leakage (1)
Apache 2.0.4x mod_php - File Descriptor Leakage (2)
Apache 2.0.4x (mod_perl) - File Descriptor Leakage (3)
Apache 2.0.4x mod_perl - File Descriptor Leakage (3)
cPanel 5-9 - Privilege Escalation
cPanel 5 < 9 - Privilege Escalation
Apache 1.3.x (mod_include) - Local Buffer Overflow
Apache 1.3.x mod_include - Local Buffer Overflow
IBM AIX 5.x - Diag Privilege Escalation Vulnerabilities
IBM AIX 5.x - 'Diag' Privilege Escalation
Nginx (Debian-Based + Gentoo) - 'logrotate' Local Privilege Escalation
Nginx (Debian-Based Distros + Gentoo) - 'logrotate' Privilege Escalation
Amanda 3.3.1 - amstar Command Injection Privilege Escalation
Amanda 3.3.1 - 'amstar' Command Injection Privilege Escalation
Microsoft Windows 7 SP1 (x86) - 'WebDAV' Privilege Escalation (MS16-016) (1)
Deepin Linux 15 - lastore-daemon Privilege Escalation
Microsoft Windows 7 SP1 (x86) - 'WebDAV' Privilege Escalation (MS16-016) (1)
Deepin Linux 15 - 'lastore-daemon' Privilege Escalation
Microsoft Windows - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)
Microsoft Windows 7 (x86) - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)
Microsoft Windows 7 (x64) - 'afd.sys' Privilege Escalation (MS14-040)
Microsoft Windows 7 (x64) - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)
Microsoft Windows 8.1/10 (x86) - Secondary Logon Standard Handles Missing Sanitization Privilege Escalation (MS16-032)
Linux Kernel 4.6.2 (Ubuntu 16.04.1) - 'IP6T_SO_SET_REPLACE' Privilege Escalation
Microsoft Windows (x86) - 'afd.sys' Privilege Escalation (MS11-046)
Allwinner 3.4 Legacy Kernel - Local Privilege Escalation (Metasploit)
Allwinner 3.4 Legacy Kernel - Privilege Escalation (Metasploit)
Microsoft Windows (x86) - 'NDISTAPI' Privilege Escalation (MS11-062)
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - 'mysql' System User Privilege Escalation / Race Condition
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - ('mysql' System User) Privilege Escalation / Race Condition
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - 'root' Privilege Escalation
MySQL / MariaDB / PerconaDB 5.5.x/5.6.x/5.7.x - ('root' System User) Privilege Escalation
Linux Kernel 4.4 (Ubuntu 16.04) - BPF Local Privilege Escalation (Metasploit)
Linux Kernel 4.4 (Ubuntu 16.04) - 'BPF' Privilege Escalation (Metasploit)
Apache CouchDB 2.0.0 - Local Privilege Escalation
Apache CouchDB 2.0.0 - Privilege Escalation
Vesta Control Panel 0.9.8-16 - Local Privilege Escalation
Vesta Control Panel 0.9.8-16 - Privilege Escalation
Systemd 228 - Privilege Escalation (PoC)
Systemd 228 (SUSE 12 SP2 / Ubuntu Touch 15.04) - Privilege Escalation (PoC)
Oracle VM VirtualBox < 5.0.32 / < 5.1.14 - Privilege Escalation (PoC)
Apache 1.3.x (mod_mylo) - Remote Code Execution
Apache 1.3.x mod_mylo - Remote Code Execution
Apache 1.3.x < 2.0.48 (mod_userdir) - Remote Users Disclosure
Apache 1.3.x < 2.0.48 mod_userdir - Remote Users Disclosure
Microsoft Windows (x86) - Metafile '.emf' Heap Overflow (MS04-032)
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuckV2.c' Remote Exploit (2)
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuckV2.c' Remote Exploit
Veritas NetBackup 6.0 (Windows x86) - (bpjava-msvc) Remote Exploit
Apache (mod_rewrite) (Windows x86) - Off-by-One Remote Overflow
Apache mod_rewrite (Windows x86) - Off-by-One Remote Overflow
3proxy 0.5.3g (Windows x86) - proxy.c logurl() Remote Buffer Overflow
Apache (mod_rewrite) 2.0.58 (Windows 2003) - Remote Overflow
Apache 2.0.58 mod_rewrite (Windows 2003) - Remote Overflow
Apache Tomcat Connector (mod_jk) - Remote Exploit (exec-shield)
Apache Tomcat Connector mod_jk - 'exec-shield' Remote Exploit
3proxy 0.5.3g (Windows x86) - logurl() Remote Buffer Overflow (Perl)
SapLPD 6.28 (Windows x86) - Remote Buffer Overflow
Apache 2.0 mod_jk2 2.0.2 (Windows x86) - Remote Buffer Overflow
Apache Tomcat Connector jk2-2.0.2 (mod_jk2) - Remote Overflow
Apache Tomcat Connector jk2-2.0.2 mod_jk2 - Remote Overflow
Apache mod_jk 1.2.19 (Windows x86) - Remote Buffer Overflow
Apache (mod_perl) - 'Apache::Status' / 'Apache2::Status' Cross-Site Scripting
Apache mod_perl - 'Apache::Status' / 'Apache2::Status' Cross-Site Scripting
Apache 2.2.14 (mod_isapi) - Dangling Pointer Remote SYSTEM Exploit
Apache 2.2.14 mod_isapi - Dangling Pointer Remote SYSTEM Exploit
Apache (mod_proxy) - Reverse Proxy Exposure (PoC)
Apache mod_proxy - Reverse Proxy Exposure (PoC)
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuck.c' Remote Exploit (1)
Apache mod_ssl < 2.8.7 OpenSSL - 'OpenFuck.c' Remote Exploit
Apache 2.2.6 (mod_negotiation) - HTML Injection and HTTP Response Splitting
Apache 2.2.6 mod_negotiation - HTML Injection and HTTP Response Splitting
Apache 7.0.x (mod_proxy) - Reverse Proxy Security Bypass
Apache 7.0.x mod_proxy - Reverse Proxy Security Bypass
Apache 2.2.15 (mod_proxy) - Reverse Proxy Security Bypass
Apache 2.2.15 mod_proxy - Reverse Proxy Security Bypass
Apache (mod_wsgi) - Information Disclosure
Apache mod_wsgi - Information Disclosure
Flatnuke 2.5.6 - Privilege Escalation / Remote Commands Execution Exploit
Flatnuke 2.5.6 - Privilege Escalation / Remote Commands Execution
phpGraphy 0.9.12 - Privilege Escalation / Commands Execution Exploit
phpGraphy 0.9.12 - Privilege Escalation / Commands Execution
PEAR 1.9.0 - Multiple Remote File Inclusion
PHP PEAR 1.9.0 - Multiple Remote File Inclusion
Pear HTTP_Upload 1.0.0b3 - Arbitrary File Upload
PHP PEAR HTTP_Upload 1.0.0b3 - Arbitrary File Upload
Radisys MRF - Command Injection
PHP PEAR 1.10.1 - Arbitrary File Download
Caregiver Script 2.57 - SQL Injection
Auction Script 6.49 - SQL Injection
Itech B2B Script 4.28 - SQL Injection
Itech Classifieds Script 7.27 - 'scat' Parameter SQL Injection
Itech Dating Script 3.26 - SQL Injection
Itech Freelancer Script 5.13 - SQL Injection
Itech Multi Vendor Script 6.49 - SQL Injection
Itech News Portal Script 6.28 - SQL Injection
Itech Real Estate Script 3.12 - SQL Injection
PHP Product Designer Script - Arbitrary File Upload
PHP Logo Designer Script - Arbitrary File Upload
Video Sharing Script 4.94 - SQL Injection
HelpDeskZ < 1.0.2 - Authenticated SQL Injection / Unauthorized File Download
Itech Classifieds Script 7.27 - 'pid' Parameter SQL Injection
Itech Dating Script 3.26 - 'send_gift.php' SQL Injection
Itech Real Estate Script 3.12 - 'id' Parameter SQL Injection
2017-01-31 05:01:15 +00:00
Offensive Security
6df10a3616
DB: 2017-01-30
...
2 new exploits
Linux - Multi/Dual mode execve(_/bin/sh__ NULL_ 0) Shellcode (37 bytes)
TrueConf Server 4.3.7 - Multiple Vulnerabilities
2017-01-30 05:01:18 +00:00
Offensive Security
2b017ecadf
DB: 2017-01-28
...
6 new exploits
Palo Alto Networks Terminal Services Agent 7.0.3-13 - Integer Overflow
My Photo Gallery 1.0 - SQL Injection
Maian Weblog 4.0 - SQL Injection
WordPress Plugin WP Private Messages 1.0.1 - SQL Injection
Online Hotel Booking System Pro 1.2 - SQL Injection
WordPress Plugin Online Hotel Booking System Pro 1.0 - SQL Injection
2017-01-28 05:01:17 +00:00
Offensive Security
d0b74905e8
DB: 2017-01-27
...
17 new exploits
Google Android - 'pm_qos' KASLR Bypass
macOS 10.12.1 / iOS 10.2 - Kernel Userspace Pointer Memory Corruption
macOS 10.12.1 / iOS Kernel - 'IOService::matchPassive' Use-After-Free
macOS 10.12.1 / iOS Kernel - 'host_self_trap' Use-After-Free
Systemd 228 - Privilege Escalation (PoC)
OpenSSH 6.8 < 6.9 - 'PTY' Privilege Escalation
Autodesk Backburner Manager 3 < 2016.0.0.2150 - Null Dereference Denial of Service
Haraka < 2.8.9 - Remote Command Execution
Linux/x86_64 - execve /bin/sh Shellcode (22 bytes)
Drupal 7.0 < 7.31 - SQL Injection (SA-CORE-2014-005) (1)
Drupal 7.0 < 7.31 - SQL Injection (1)
Drupal 7.0 < 7.31 - SQL Injection (SA-CORE-2014-005) (2)
Drupal 7.0 < 7.31 - SQL Injection (2)
Pear HTTP_Upload 1.0.0b3 - Arbitrary File Upload
KB Affiliate Referral Script 1.0 - Authentication Bypass
KB Login Authentication Script 1.1 - Authentication Bypass
KB Messages PHP Script 1.0 - Authentication Bypass
Web Based TimeSheet Script - Authentication Bypass
TM RG4332 Wireless Router - Arbitrary File Disclosure
PHPBack < 1.3.1 - SQL Injection / Cross-Site Scripting
Polycom VVX Web Interface - Change Admin Password
2017-01-27 05:01:17 +00:00
Offensive Security
45360ed27c
DB: 2017-01-26
...
7 new exploits
OpenSSL ASN.1 <= 0.9.6j / 0.9.7b - Brute Forcer for Parsing Bugs
OpenSSL ASN.1 < 0.9.6j / 0.9.7b - Brute Forcer for Parsing Bugs
Inframail Advantage Server Edition 6.0 <= 6.37 - (SMTP) Buffer Overflow
Inframail Advantage Server Edition 6.0 <= 6.37 - (FTP) Buffer Overflow
Inframail Advantage Server Edition 6.0 < 6.37 - (SMTP) Buffer Overflow
Inframail Advantage Server Edition 6.0 < 6.37 - (FTP) Buffer Overflow
Blitzkrieg 2 <= 1.21 - (server/client) Denial of Service
Blitzkrieg 2 < 1.21 - (Server/Client) Denial of Service
Microsoft Windows Media Player 7.1 <= 10 - BMP Heap Overflow PoC (MS06-005) (1)
Microsoft Windows Media Player 7.1 < 10 - BMP Heap Overflow PoC (MS06-005) (1)
DESlock+ <= 3.2.6 - 'DLMFENC.sys' Local Kernel Ring0 link list zero (PoC)
DESlock+ < 3.2.6 - 'DLMFENC.sys' Local Kernel Ring0 link list zero (PoC)
DESlock+ <= 3.2.7 - Local Kernel Overflow (PoC)
DESlock+ <= 3.2.7 - Local Kernel Race Condition Denial of Service (PoC)
DESlock+ <= 3.2.7 - (probe read) Local Kernel Denial of Service (PoC)
DESlock+ < 3.2.7 - Local Kernel Overflow (PoC)
DESlock+ < 3.2.7 - Local Kernel Race Condition Denial of Service (PoC)
DESlock+ < 3.2.7 - (probe read) Local Kernel Denial of Service (PoC)
ViPlay3 <= 3.00 - '.vpl' Local Stack Overflow (PoC)
ViPlay3 < 3.00 - '.vpl' Local Stack Overflow (PoC)
Microsoft Windows 2000<2008 - Embedded OpenType Font Engine Remote Code Execution (MS09-065) (Metasploit)
Microsoft Windows 2000 < 2008 - Embedded OpenType Font Engine Remote Code Execution (MS09-065) (Metasploit)
Adobe Flash - No Checks on Vector.<uint> Capacity Field
Adobe Flash - 'uint' Capacity Field
Linux Kernel 2.6.13 <= 2.6.17.4 - 'sys_prctl()' Privilege Escalation (1)
Linux Kernel 2.6.13 <= 2.6.17.4 - 'sys_prctl()' Privilege Escalation (2)
Linux Kernel 2.6.13 <= 2.6.17.4 - 'sys_prctl()' Privilege Escalation (3)
Linux Kernel 2.6.13 <= 2.6.17.4 - 'sys_prctl()' Privilege Escalation (4)
Linux Kernel 2.6.13 < 2.6.17.4 - 'sys_prctl()' Privilege Escalation (1)
Linux Kernel 2.6.13 < 2.6.17.4 - 'sys_prctl()' Privilege Escalation (2)
Linux Kernel 2.6.13 < 2.6.17.4 - 'sys_prctl()' Privilege Escalation (3)
Linux Kernel 2.6.13 < 2.6.17.4 - 'sys_prctl()' Privilege Escalation (4)
Linux Kernel 2.6.13 <= 2.6.17.4 - 'logrotate prctl()' Privilege Escalation
Linux Kernel 2.6.13 < 2.6.17.4 - 'logrotate prctl()' Privilege Escalation
X11R6 <= 6.4 XKEYBOARD (solaris/sparc) - Local Buffer Overflow (1)
X11R6 <= 6.4 XKEYBOARD (solaris x86) - Local Buffer Overflow
X11R6 <= 6.4 XKEYBOARD (sco x86) - Local Buffer Overflow
X11R6 < 6.4 XKEYBOARD (solaris/sparc) - Local Buffer Overflow (1)
X11R6 < 6.4 XKEYBOARD (solaris x86) - Local Buffer Overflow
X11R6 < 6.4 XKEYBOARD (sco x86) - Local Buffer Overflow
X11R6 <= 6.4 XKEYBOARD (solaris/sparc) - Local Buffer Overflow (2)
X11R6 < 6.4 XKEYBOARD (solaris/sparc) - Local Buffer Overflow (2)
AtomixMP3 <= 2.3 - '.m3u' Buffer Overflow
AtomixMP3 < 2.3 - '.m3u' Buffer Overflow
Linux Kernel 2.6.17 <= 2.6.24.1 - 'vmsplice' Privilege Escalation (2)
Linux Kernel 2.6.23 <= 2.6.24 - 'vmsplice' Privilege Escalation (1)
Linux Kernel 2.6.17 < 2.6.24.1 - 'vmsplice' Privilege Escalation (2)
Linux Kernel 2.6.23 < 2.6.24 - 'vmsplice' Privilege Escalation (1)
DESlock+ <= 3.2.6 - 'LIST' Local Kernel Memory Leak (PoC)
DESlock+ <= 3.2.6 - Local Kernel Ring0 link list zero SYSTEM Exploit
DESlock+ <= 3.2.6 - 'DLMFDISK.sy's Local kernel Ring0 SYSTEM Exploit
DESlock+ < 3.2.6 - 'LIST' Local Kernel Memory Leak (PoC)
DESlock+ < 3.2.6 - Local Kernel Ring0 link list zero SYSTEM Exploit
DESlock+ < 3.2.6 - 'DLMFDISK.sy's Local kernel Ring0 SYSTEM Exploit
AtomixMP3 <= 2.3 - 'Playlist' Universal Overwrite (SEH)
AtomixMP3 < 2.3 - 'Playlist' Universal Overwrite (SEH)
Linux Kernel 2.6.18 <= 2.6.18-20 - Privilege Escalation
Linux Kernel 2.6.18 < 2.6.18-20 - Privilege Escalation
Winamp 5.05<5.13 - '.ini' Local Stack Buffer Overflow (PoC)
Winamp 5.05 < 5.13 - '.ini' Local Stack Buffer Overflow (PoC)
AhnLab V3 Internet Security 8.0 <= 1.2.0.4 - Privilege Escalation
NProtect Anti-Virus 2007 <= 2010.5.11.1 - Privilege Escalation
ESTsoft ALYac Anti-Virus 1.5 <= 5.0.1.2 - Privilege Escalation
ViRobot Desktop 5.5 and Server 3.5 <= 2008.8.1.1 - Privilege Escalation
AhnLab V3 Internet Security 8.0 < 1.2.0.4 - Privilege Escalation
NProtect Anti-Virus 2007 < 2010.5.11.1 - Privilege Escalation
ESTsoft ALYac Anti-Virus 1.5 < 5.0.1.2 - Privilege Escalation
ViRobot Desktop 5.5 and Server 3.5 < 2008.8.1.1 - Privilege Escalation
DESlock+ <= 4.1.10 - 'vdlptokn.sys' Local Kernel Ring0 SYSTEM Exploit
DESlock+ < 4.1.10 - 'vdlptokn.sys' Local Kernel Ring0 SYSTEM Exploit
PolicyKit polkit-1 <= 0.101 - Linux Privilege Escalation
PolicyKit polkit-1 < 0.101 - Linux Privilege Escalation
Linux Kernel 2.6.39 <= 3.2.2 (Gentoo / Ubuntu x86/x64) - 'Mempodipper.c' Privilege Escalation (1)
Linux Kernel 2.6.39 < 3.2.2 (Gentoo / Ubuntu x86/x64) - 'Mempodipper.c' Privilege Escalation (1)
Linux Kernel 2.4.4 <= 2.4.37.4 / 2.6.0 <= 2.6.30.4 - 'Sendpage' Privilege Escalation (Metasploit)
Linux Kernel 2.4.4 < 2.4.37.4 / 2.6.0 < 2.6.30.4 - 'Sendpage' Privilege Escalation (Metasploit)
Linux Kernel 2.6.32 <= 3.x.x (CentOS) - 'PERF_EVENTS' Privilege Escalation (1)
Linux Kernel 2.6.32 < 3.x.x (CentOS) - 'PERF_EVENTS' Privilege Escalation (1)
Linux Kernel 2.6.0 <= 2.6.31 - 'pipe.c' Privilege Escalation (1)
Linux Kernel 2.6.0 < 2.6.31 - 'pipe.c' Privilege Escalation (1)
Linux Kernel 3.14-rc1 <= 3.15-rc4 (x64) - Raw Mode PTY Local Echo Race Condition Privilege Escalation
Linux Kernel 3.14-rc1 < 3.15-rc4 (x64) - Raw Mode PTY Local Echo Race Condition Privilege Escalation
Linux Kernel 2.6.39 <= 3.2.2 (x86/x64) - 'Mempodipper.c' Privilege Escalation (2)
Linux Kernel 2.6.39 < 3.2.2 (x86/x64) - 'Mempodipper.c' Privilege Escalation (2)
OSSEC 2.7 <= 2.8.1 - 'diff' Command Privilege Escalation
OSSEC 2.7 < 2.8.1 - 'diff' Command Privilege Escalation
GNU Screen 4.5.0 - Privilege Escalation (PoC)
GNU Screen 4.5.0 - Privilege Escalation
Man-db 2.6.7.1 - Privilege Escalation (PoC)
e107 <= 0.6172 - 'resetcore.php' SQL Injection
e107 < 0.6172 - 'resetcore.php' SQL Injection
Microsoft Windows Media Player 7.1 <= 10 - BMP Heap Overflow PoC (MS06-005) (2)
Microsoft Windows Media Player 7.1 < 10 - BMP Heap Overflow PoC (MS06-005) (2)
Mercur Messaging 2005 <= SP4 - IMAP Remote Exploit (Egghunter)
Mercur Messaging 2005 < SP4 - IMAP Remote Exploit (Egghunter)
Mercury/32 Mail Server 3.32<4.51 - SMTP Unauthenticated EIP Overwrite
Mercury/32 Mail Server 3.32 < 4.51 - SMTP Unauthenticated EIP Overwrite
Dovecot IMAP 1.0.10 <= 1.1rc2 - Remote Email Disclosure
Dovecot IMAP 1.0.10 < 1.1rc2 - Remote Email Disclosure
Debian and Derivatives OpenSSL 0.9.8c-1 <= 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Perl)
Debian and Derivatives OpenSSL 0.9.8c-1 <= 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Ruby)
Debian and Derivatives OpenSSL 0.9.8c-1 < 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Perl)
Debian and Derivatives OpenSSL 0.9.8c-1 < 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Ruby)
Debian and Derivatives OpenSSL 0.9.8c-1 <= 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Python)
Debian and Derivatives OpenSSL 0.9.8c-1 < 0.9.8g-9 - Predictable PRNG Brute Force SSH Exploit (Python)
navicopa WebServer 3.0.1 - Buffer Overflow / Script Source Disclosure
Navicopa WebServer 3.0.1 - Buffer Overflow / Script Source Disclosure
NaviCopa Web Server 3.01 - Remote Buffer Overflow
NaviCopa WebServer 3.01 - Remote Buffer Overflow
Oracle Database 10.1.0.5 <= 10.2.0.4 - AUTH_SESSKEY Length Validation Remote Buffer Overflow
Oracle Database 10.1.0.5 < 10.2.0.4 - AUTH_SESSKEY Length Validation Remote Buffer Overflow
Liquid XML Studio 2010 <= 8.061970 - 'LtXmlComHelp8.dll' OpenFile() Remote Overflow
Liquid XML Studio 2010 < 8.061970 - 'LtXmlComHelp8.dll' OpenFile() Remote Overflow
TFTPD32 <= 2.21 - Long Filename Buffer Overflow (Metasploit)
TFTPD32 < 2.21 - Long Filename Buffer Overflow (Metasploit)
Mercury/32 <= 4.01b - PH Server Module Buffer Overflow (Metasploit)
Mercury/32 < 4.01b - PH Server Module Buffer Overflow (Metasploit)
Mercury/32 Mail Server <= 4.01b - LOGIN Buffer Overflow (Metasploit)
Mercury/32 Mail Server < 4.01b - LOGIN Buffer Overflow (Metasploit)
Exim4 <= 4.69 - string_format Function Heap Buffer Overflow (Metasploit)
Exim4 < 4.69 - string_format Function Heap Buffer Overflow (Metasploit)
Mozilla Firefox 7 / 8 <= 8.0.1 - nsSVGValue Out-of-Bounds Access (Metasploit)
Mozilla Firefox 7 / 8 < 8.0.1 - nsSVGValue Out-of-Bounds Access (Metasploit)
Active Collab 'chat module' <= 2.3.8 - Remote PHP Code Injection (Metasploit)
Active Collab 'chat module' < 2.3.8 - Remote PHP Code Injection (Metasploit)
Apache Struts 2.0.0 <= 2.2.1.1 - XWork 's:submit' HTML Tag Cross-Site Scripting
Apache Struts 2.0.0 < 2.2.1.1 - XWork 's:submit' HTML Tag Cross-Site Scripting
ntop/nbox 2.3 <= 2.5 - Multiple Vulnerabilities
ntop/nbox 2.3 < 2.5 - Multiple Vulnerabilities
Google Android 5.0 <= 5.1.1 - 'Stagefright' .MP4 tx3g Integer Overflow (Metasploit)
Google Android 5.0 < 5.1.1 - 'Stagefright' .MP4 tx3g Integer Overflow (Metasploit)
Mozilla Firefox < 50.0.2 - nsSMILTimeContainer::NotifyTimeChange() Remote Code Execution (Metasploit)
Mozilla Firefox < 50.0.2 - 'nsSMILTimeContainer::NotifyTimeChange()' Remote Code Execution (Metasploit)
Geutebrueck GCore 1.3.8.42/1.4.2.37 - Remote Code Execution (Metasploit)
Drupal 4.5.3 <= 4.6.1 - Comments PHP Injection
Drupal 4.5.3 < 4.6.1 - Comments PHP Injection
FCKEditor 2.0 <= 2.2 - 'FileManager connector.php' Arbitrary File Upload
FCKEditor 2.0 < 2.2 - 'FileManager connector.php' Arbitrary File Upload
RechnungsZentrale V2 <= 1.1.3 - Remote File Inclusion
RechnungsZentrale V2 < 1.1.3 - Remote File Inclusion
RsGallery2 <= 1.11.2 - 'rsgallery.html.php' File Inclusion
RsGallery2 < 1.11.2 - 'rsgallery.html.php' File Inclusion
Invision Power Board 2.1 <= 2.1.6 - SQL Injection (1)
Invision Power Board 2.1 < 2.1.6 - SQL Injection (1)
Invision Power Board 2.1 <= 2.1.6 - SQL Injection (2)
Invision Power Board 2.1 < 2.1.6 - SQL Injection (2)
vbPortal 3.0.2 <= 3.6.0 b1 - 'cookie' Remote Code Execution
vbPortal 3.0.2 < 3.6.0 b1 - 'cookie' Remote Code Execution
Wikepage Opus 10 <= 2006.2a (lng) - Remote Command Execution
Wikepage Opus 10 < 2006.2a (lng) - Remote Command Execution
e107 <= 0.75 - (GLOBALS Overwrite) Remote Code Execution
e107 < 0.75 - (GLOBALS Overwrite) Remote Code Execution
Haberx 1.02 <= 1.1 - (tr) SQL Injection
Haberx 1.02 < 1.1 - (tr) SQL Injection
PNphpBB2 <= 1.2g - 'phpbb_root_path' Parameter Remote File Inclusion
PNPHPBB2 < 1.2g - 'phpbb_root_path' Parameter Remote File Inclusion
exV2 <= 2.0.4.3 - (sort) SQL Injection
exV2 < 2.0.4.3 - (sort) SQL Injection
exV2 <= 2.0.4.3 - extract() Remote Command Execution
exV2 < 2.0.4.3 - extract() Remote Command Execution
Kietu? <= 4.0.0b2 - 'hit.php' Remote File Inclusion
Kietu? < 4.0.0b2 - 'hit.php' Remote File Inclusion
Forum82 <= 2.5.2b - (repertorylevel) Multiple File Inclusion
Forum82 < 2.5.2b - (repertorylevel) Multiple File Inclusion
e107 <= 0.75 - (e107language_e107cookie) Local File Inclusion
e107 < 0.75 - (e107language_e107cookie) Local File Inclusion
Mambo Component com_flyspray <= 1.0.1 - Remote File Disclosure
Mambo Component com_flyspray < 1.0.1 - Remote File Disclosure
PNPHPBB2 <= 1.2 - 'index.php' SQL Injection
PNPHPBB2 < 1.2 - 'index.php' SQL Injection
e107 <= 0.7.8 - (photograph) Arbitrary File Upload
e107 < 0.7.8 - (photograph) Arbitrary File Upload
EVA-Web 1.1 <= 2.2 - 'index.php3' Remote File Inclusion
EVA-Web 1.1 < 2.2 - 'index.php3' Remote File Inclusion
PNPHPBB2 <= 1.2i - 'viewforum.php' SQL Injection
PNPHPBB2 < 1.2i - 'viewforum.php' SQL Injection
WordPress 1.5.1.1 <= 2.2.2 - Multiple Vulnerabilities
WordPress 1.5.1.1 < 2.2.2 - Multiple Vulnerabilities
PNPHPBB2 <= 1.2i - 'PHPEx' Parameter Local File Inclusion
PNPHPBB2 < 1.2i - 'PHPEx' Parameter Local File Inclusion
zKup CMS 2.0 <= 2.3 - Remote Add Admin
zKup CMS 2.0 <= 2.3 - Arbitrary File Upload
zKup CMS 2.0 < 2.3 - Remote Add Admin
zKup CMS 2.0 < 2.3 - Arbitrary File Upload
GLLCTS2 <= 4.2.4 - 'detail' Parameter SQL Injection
GLLCTS2 < 4.2.4 - 'detail' Parameter SQL Injection
PHPHoo3 <= 5.2.6 - 'viewCat' Parameter SQL Injection
PHPHoo3 < 5.2.6 - 'viewCat' Parameter SQL Injection
E-Store Kit-1 <= 2 PayPal Edition - 'pid' Parameter SQL Injection
E-Store Kit-1 < 2 PayPal Edition - 'pid' Parameter SQL Injection
e107 <= 0.7.11 - Arbitrary Variable Overwriting
e107 < 0.7.11 - Arbitrary Variable Overwriting
e107 <= 0.7.13 - 'usersettings.php' Blind SQL Injection
e107 < 0.7.13 - 'usersettings.php' Blind SQL Injection
VideoScript 3.0 <= 4.0.1.50 - Official Shell Injection
VideoScript 3.0 <= 4.1.5.55 - Unofficial Shell Injection
VideoScript 3.0 < 4.0.1.50 - Official Shell Injection
VideoScript 3.0 < 4.1.5.55 - Unofficial Shell Injection
IPNPro3 <= 1.44 - Admin Password Changing Exploit
IPNPro3 < 1.44 - Admin Password Changing Exploit
PNphpBB2 <= 1.2i - (ModName) Multiple Local File Inclusion
PNPHPBB2 < 1.2i - (ModName) Multiple Local File Inclusion
WEBalbum 2.4b - 'photo.php id' Blind SQL Injection
WEBalbum 2.4b - 'id' Parameter Blind SQL Injection
e107 <= 0.7.15 - (extended_user_fields) Blind SQL Injection
e107 < 0.7.15 - (extended_user_fields) Blind SQL Injection
Alqatari group 1.0 <= 5.0 - 'id' SQL Injection
AlefMentor 2.0 <= 5.0 - 'id' SQL Injection
Alqatari group 1.0 < 5.0 - 'id' SQL Injection
AlefMentor 2.0 < 5.0 - 'id' SQL Injection
2DayBiz Matrimonial Script - smartresult.php SQL Injection
2DayBiz Matrimonial Script - 'smartresult.php' SQL Injection
fozzcom shopping<= 7.94+8.04 - Multiple Vulnerabilities
Fozzcom Shopping < 7.94 / < 8.04 - Multiple Vulnerabilities
Jcow Social Networking Script 4.2 <= 5.2 - Arbitrary Code Execution (Metasploit)
Jcow Social Networking Script 4.2 < 5.2 - Arbitrary Code Execution (Metasploit)
Concrete5 <= 5.4.2.1 - Multiple Vulnerabilities
Concrete5 < 5.4.2.1 - Multiple Vulnerabilities
CaupoShop Pro (2.x / <= 3.70) Classic 3.01 - Local File Inclusion
CaupoShop Pro (2.x < 3.70) Classic 3.01 - Local File Inclusion
Apache Struts2 <= 2.3.1 - Multiple Vulnerabilities
Apache Struts2 < 2.3.1 - Multiple Vulnerabilities
Ruslan Communications <Body>Builder - SQL Injection
Ruslan Communications <Body>Builder - Authentication Bypass
AllMyVisitors 0.x - info.inc.php Arbitrary Code Execution
AllMyLinks 0.x - footer.inc.php Arbitrary Code Execution
AllMyVisitors 0.x - 'info.inc.php' Arbitrary Code Execution
AllMyLinks 0.x - 'footer.inc.php' Arbitrary Code Execution
MyBB - 'editpost.php posthash' SQL Injection
MyBB 1.6.9 - 'editpost.php posthash' Time Based SQL Injection
CoolForum 0.5/0.7/0.8 - register.php login Parameter SQL Injection
CoolForum 0.5/0.7/0.8 - 'register.php' login Parameter SQL Injection
MyBB - Multiple Cross-Site Scripting / SQL Injection
MyBulletinBoard (MyBB) RC4 - Multiple Cross-Site Scripting / SQL Injection
4homepages 4Images 1.7 - member.php Cross-Site Scripting
4homepages 4Images 1.7 - 'member.php' Cross-Site Scripting
4Images 1.7.1 - member.php sessionid Parameter SQL Injection
4Images 1.7.1 - 'member.php' sessionid Parameter SQL Injection
Alex DownloadEngine 1.4.1 - comments.php SQL Injection
Alex DownloadEngine 1.4.1 - 'comments.php' SQL Injection
Album Photo Sans Nom 1.6 - Getimg.php Remote File Inclusion
Album Photo Sans Nom 1.6 - 'Getimg.php' Remote File Inclusion
4Images 1.7 - details.php Cross-Site Scripting
4Images 1.7 - 'details.php' Cross-Site Scripting
212Cafe Guestbook 4.00 - show.php Cross-Site Scripting
212Cafe Guestbook 4.00 - 'show.php' Cross-Site Scripting
2z Project 0.9.5 - rating.php Cross-Site Scripting
2z Project 0.9.5 - 'rating.php' Cross-Site Scripting
Openads (PHPAdsNew) <=c 2.0.8 - 'lib-remotehost.inc.php' Remote File Inclusion
Openads (PHPAdsNew) < 2.0.8 - 'lib-remotehost.inc.php' Remote File Inclusion
212Cafe WebBoard 6.30 - Read.php SQL Injection
212Cafe WebBoard 6.30 - 'Read.php' SQL Injection
PHP-Nuke Advertising Module 0.9 - modules.php SQL Injection
PHP-Nuke Advertising Module 0.9 - 'modules.php' SQL Injection
Drupal 7.0 <= 7.31 - SQL Injection (SA-CORE-2014-005) (1)
Drupal 7.0 < 7.31 - SQL Injection (SA-CORE-2014-005) (1)
Drupal 7.0 <= 7.31 - SQL Injection (SA-CORE-2014-005) (2)
Drupal 7.0 < 7.31 - SQL Injection (SA-CORE-2014-005) (2)
ManageEngine ServiceDesk Plus 9.0 (< Build 9031) - User Privileges Management
ManageEngine ServiceDesk Plus 9.0 < Build 9031 - User Privileges Management
Joomla! - 'redirect.php' SQL Injection
Joomla! 2.5.1 - 'redirect.php' Time Based SQL Injection
Plone - 'in_portal.py' <= 4.1.3 Session Hijacking
Plone - 'in_portal.py' < 4.1.3 Session Hijacking
Kaltura Community Edition <= 11.1.0-2 - Multiple Vulnerabilities
Kaltura Community Edition < 11.1.0-2 - Multiple Vulnerabilities
Skybox Platform <= 7.0.611 - Multiple Vulnerabilities
Skybox Platform < 7.0.611 - Multiple Vulnerabilities
SOLIDserver <= 5.0.4 - Local File Inclusion
SOLIDserver < 5.0.4 - Local File Inclusion
WordPress Plugin DZS Videogallery <= 8.60 - Multiple Vulnerabilities
WordPress Plugin DZS Videogallery < 8.60 - Multiple Vulnerabilities
Movie Portal Script 7.36 - Multiple Vulnerabilities
Joomla! < 2.5.2 - Admin Creation
Joomla! < 3.6.4 - Admin TakeOver
2017-01-26 05:01:18 +00:00
Offensive Security
763b417a35
DB: 2017-01-25
...
6 new exploits
Mozilla Firefox 1.5 - (history.dat) Looping (PoC)
Mozilla Firefox 1.5 - 'history.dat' Looping (PoC)
Microsoft Internet Explorer 6 - (script action handlers) 'mshtml.dll' Denial of Service
Microsoft Windows Server 2003/XP - (IGMP v3) Denial of Service (MS06-007) (1)
Microsoft Internet Explorer 6 - Script Action Handlers 'mshtml.dll' Denial of Service
Microsoft Windows Server 2003/XP - IGMP v3 Denial of Service (MS06-007) (1)
Microsoft Windows Server 2003/XP - (IGMP v3) Denial of Service (MS06-007) (2)
Microsoft Windows Server 2003/XP - IGMP v3 Denial of Service (MS06-007) (2)
Apple Mac OSX Safari 2.0.3 - (417.9.2) (ROWSPAN) Denial of Service (PoC)
Apple Mac OSX Safari 2.0.3 (417.9.2) - 'ROWSPAN' Denial of Service (PoC)
acFTP FTP Server 1.4 - (USER) Remote Buffer Overflow (PoC)
acFTP FTP Server 1.4 - 'USER' Remote Buffer Overflow (PoC)
0verkill 0.16 - (ASCII-ART Game) Remote Integer Overflow Crash (PoC)
0verkill 0.16 - ASCII-ART Game Remote Integer Overflow Crash (PoC)
Clam AntiVirus 0.88.4 - (rebuildpe) Remote Heap Overflow (PoC)
Asterisk 1.0.12 / 1.2.12.1 - (chan_skinny) Remote Heap Overflow (PoC)
Clam AntiVirus 0.88.4 - 'rebuildpe' Remote Heap Overflow (PoC)
Asterisk 1.0.12 / 1.2.12.1 - 'chan_skinny' Remote Heap Overflow (PoC)
AT-TFTP 1.9 - (Long Filename) Remote Buffer Overflow (PoC)
AT-TFTP 1.9 - 'Long Filename' Remote Buffer Overflow (PoC)
LeadTools ISIS Control - (ltisi14E.ocx v.14.5.0.44) Remote Denial of Service
LeadTools ISIS Control - 'ltisi14E.ocx 14.5.0.44' Remote Denial of Service
Microsoft Visual FoxPro 6.0 - (FPOLE.OCX 6.0.8450.0) - Remote (PoC)
Microsoft Visual FoxPro 6.0 - FPOLE.OCX 6.0.8450.0 Remote (PoC)
Castle Rock Computing SNMPc < 7.1.1 - (Community) Remote Buffer Overflow (PoC)
Castle Rock Computing SNMPc < 7.1.1 - 'Community' Remote Buffer Overflow (PoC)
BitDefender - (module pdf.xmd) Infinite Loop Denial of Service (PoC)
BitDefender - Module pdf.xmd Infinite Loop Denial of Service (PoC)
ClamAV < 0.94.2 - (JPEG Parsing) Recursive Stack Overflow (PoC)
ClamAV < 0.94.2 - JPEG Parsing Recursive Stack Overflow (PoC)
Amaya Web Browser 10.0.1/10.1-pre5 - (html tag) Buffer Overflow (PoC)
Amaya Web Browser 10.0.1/10.1-pre5 - HTML Tag Buffer Overflow (PoC)
Amaya Web Editor - XML and HTML parser Vulnerabilities
Amaya Web Editor 11.0 - XML and HTML parser Vulnerabilities
Elecard AVC HD PLAYER - '.m3u' / '.xpl' Local Stack Overflow (PoC)
RealVNC 4.1.2 - (vncviewer.exe) RFB Protocol Remote Code Execution (PoC)
Elecard AVC HD player - '.m3u' / '.xpl' Local Stack Overflow (PoC)
RealVNC 4.1.2 - 'vncviewer.exe' RFB Protocol Remote Code Execution (PoC)
Apple Mac OSX xnu 1228.3.13 - (zip-notify) Remote Kernel Overflow (PoC)
Apple Mac OSX xnu 1228.3.13 - 'zip-notify' Remote Kernel Overflow (PoC)
Apple Mac OSX xnu 1228.3.13 - (profil) Kernel Memory Leak/Denial of Service (PoC)
Apple Mac OSX xnu 1228.x - (vfssysctl) Local Kernel Denial of Service (PoC)
Apple Mac OSX xnu 1228.3.13 - 'Profil' Kernel Memory Leak/Denial of Service (PoC)
Apple Mac OSX xnu 1228.x - 'vfssysctl' Local Kernel Denial of Service (PoC)
AIMP 2.51 build 330 - (ID3v1/ID3v2 Tag) Remote Stack Buffer Overflow PoC (SEH)
AIMP 2.51 build 330 - ID3v1/ID3v2 Tag Remote Stack Buffer Overflow PoC (SEH)
eEye Retina WiFi Security Scanner 1.0 - (.rws Parsing) Buffer Overflow (PoC)
AwingSoft Web3D Player - (WindsPly.ocx) Remote Buffer Overflow (PoC)
eEye Retina WiFi Security Scanner 1.0 - '.rws Parsing' Buffer Overflow (PoC)
AwingSoft Web3D Player - 'WindsPly.ocx' Remote Buffer Overflow (PoC)
Apple Safari 4.0.2 - (WebKit Parsing of Floating Point Numbers) Buffer Overflow (PoC)
Apple Safari 4.0.2 - WebKit Parsing of Floating Point Numbers Buffer Overflow (PoC)
Cerberus FTP 3.0.1 - (ALLO) Remote Overflow Denial of Service (Metasploit)
Cerberus FTP 3.0.1 - 'ALLO' Remote Overflow Denial of Service (Metasploit)
Nginx 0.7.0 < 0.7.61 / 0.6.0 < 0.6.38 / 0.5.0 < 0.5.37 / 0.4.0 < 0.4.14 - (PoC)
Nginx 0.7.0 < 0.7.61 / 0.6.0 < 0.6.38 / 0.5.0 < 0.5.37 / 0.4.0 < 0.4.14 - Denial of Service (PoC)
Spider Solitaire - Denial of Service (PoC)
Ofilter Player - (skin.ini) Local Crash (PoC)
Ofilter Player - 'skin.ini' Local Crash (PoC)
NPlayer - (.dat Skin) Local Heap Overflow (PoC)
NPlayer - '.dat Skin' Local Heap Overflow (PoC)
MediaMonkey Player - Local Denial of Service
MediaMonkey 3.2.0 - Local Denial of Service
Apple Safari 4.0.5 - (object tag) 'JavaScriptCore.dll' Denial of Service (Crash)
Apple Safari 4.0.5 - Object Tag 'JavaScriptCore.dll' Denial of Service (Crash)
RPM Select/Elite 5.0 - (.xml config parsing) Unicode Buffer Overflow (PoC)
RPM Select/Elite 5.0 - '.xml config parsing' Unicode Buffer Overflow (PoC)
EDraw Flowchart ActiveX Control 2.3 - (EDImage.ocx) Remote Denial of Service (IE)
EDraw Flowchart ActiveX Control 2.3 - 'EDImage.ocx' Remote Denial of Service (IE)
Apple Safari 4.0.5 - (531.22.7) Denial of Service
Apple Safari 4.0.5 (531.22.7) - Denial of Service
Savy Soda Documents - (Mobile Office Suite) '.XLS' Denial of Service
Savy Soda Documents - Mobile Office Suite '.XLS' Denial of Service
Corel WordPerfect Office X5 15.0.0.357 - (wpd) Buffer Overflow (PoC)
Corel Presentations X5 15.0.0.357 - (shw) Buffer Preoccupation (PoC)
Corel WordPerfect Office X5 15.0.0.357 - 'wpd' Buffer Overflow (PoC)
Corel Presentations X5 15.0.0.357 - 'shw' Buffer Preoccupation (PoC)
Barcodewiz BarCode ActiveX 3.29 - (PoC)
Barcodewiz BarCode ActiveX 3.29 - Denial of Service (PoC)
LeadTools 11.5.0.9 - (ltisi11n.ocx) DriverName() Access Violation Denial of Service
LeadTools 11.5.0.9 - (ltlst11n.ocx) Insert() Access Violation Denial of Service
LeadTools 11.5.0.9 - 'ltisi11n.ocx' DriverName() Access Violation Denial of Service
LeadTools 11.5.0.9 - 'ltlst11n.ocx' Insert() Access Violation Denial of Service
LeadTools 11.5.0.9 - (ltdlg11n.ocx) Bitmap Access Violation Denial of Service
LeadTools 11.5.0.9 - 'ltdlg11n.ocx' Bitmap Access Violation Denial of Service
MediaMonkey 3.2.4.1304 - 'mp3' Buffer Overflow (PoC)
MediaMonkey 3.2.4.1304 - '.mp3' Buffer Overflow (PoC)
Flash Player - (Flash6.ocx) AllowScriptAccess Denial of Service (PoC)
Flash Player - 'Flash6.ocx' AllowScriptAccess Denial of Service (PoC)
Microsoft IIS 7.5 (Windows 7) - FTPSVC UNAUTH'D Remote Denial of Service (PoC)
Microsoft IIS 7.5 (Windows 7) - FTPSVC Unauthorized Remote Denial of Service (PoC)
Avira AntiVir QUA file - (avcenter.exe) Local Crash (PoC)
Avira AntiVir - '.QUA' File 'avcenter.exe' Local Crash (PoC)
SlimPDF Reader - (PoC)
SlimPDF Reader - Denial of Service (PoC)
VideoLAN VLC Media Player 1.1.11 - (libav) 'libavcodec_plugin.dll' Denial of Service
VideoLAN VLC Media Player 1.1.11 - libav 'libavcodec_plugin.dll' Denial of Service
PHP Hash Table Collision - (PoC)
PHP Hash Table Collision - Denial of Service (PoC)
EdrawSoft Office Viewer Component ActiveX 5.6 - (officeviewermme.ocx) Buffer Overflow (PoC)
EdrawSoft Office Viewer Component ActiveX 5.6 - 'officeviewermme.ocx' Buffer Overflow (PoC)
PowerNet Twin Client 8.9 - (RFSync 1.0.0.1) Crash (PoC)
PowerNet Twin Client 8.9 - 'RFSync 1.0.0.1' Crash (PoC)
Spytech NetVizor 6.1 - (services.exe) Denial of Service
Spytech NetVizor 6.1 - 'services.exe' Denial of Service
Microsoft Windows Help program - (WinHlp32.exe) Crash (PoC)
Microsoft Windows Help program - 'WinHlp32.exe' Crash (PoC)
Easy DVD Player 3.5.1 - (libav) 'libavcodec_plugin.dll' Denial of Service
Easy DVD Player 3.5.1 - libav 'libavcodec_plugin.dll' Denial of Service
TeraCopy 2.3 - (default.mo) Language File Integer Overflow
TeraCopy 2.3 - 'default.mo' Language File Integer Overflow
Samba < 3.6.2 (x86) - (PoC)
Samba < 3.6.2 (x86) - Denial of Serviec (PoC)
Acoustica Pianissimo 1.0 Build 12 - (Registration ID) Buffer Overflow (PoC)
Acoustica Pianissimo 1.0 Build 12 - 'Registration ID' Buffer Overflow (PoC)
WHMCS 5.12 - 'cart.php' Denial of Service
WHMCompleteSolution (WHMCS) 5.12 - 'cart.php' Denial of Service
BSD chpass - (pw_error(3)) Privilege Escalation
BSD chpass - 'pw_error(3)' Privilege Escalation
Solaris 2.6/7/8/9 (sparc) - (ld.so.1) Privilege Escalation
Solaris 2.6/7/8/9 (sparc) - 'ld.so.1' Privilege Escalation
Tru64 UNIX 5.0 - (Rev. 910) rdist NLSPATH Buffer Overflow
Tru64 UNIX 5.0 - (Rev. 910) edauth NLSPATH Buffer Overflow
Tru64 UNIX 5.0 (Rev. 910) - rdist NLSPATH Buffer Overflow
Tru64 UNIX 5.0 (Rev. 910) - edauth NLSPATH Buffer Overflow
Kerio WebSTAR 5.4.2 (OSX) - (libucache.dylib) Privilege Escalation
Kerio WebSTAR 5.4.2 (OSX) - 'libucache.dylib' Privilege Escalation
Apache 1.3.33/1.3.34 (Ubuntu / Debian) - (CGI TTY) Privilege Escalation
Apache 1.3.33/1.3.34 (Ubuntu / Debian) - CGI TTY Privilege Escalation
East Wind Software - (advdaudio.ocx 1.5.1.1) Local Buffer Overflow
East Wind Software - 'advdaudio.ocx 1.5.1.1' Local Buffer Overflow
Total Video Player 1.31 - (DefaultSkin.ini) Local Stack Overflow
Total Video Player 1.31 - 'DefaultSkin.ini' Local Stack Overflow
Mp3-Nator 2.0 - (ListData.dat) Universal Buffer Overflow (SEH)
Mp3-Nator 2.0 - 'ListData.dat' Universal Buffer Overflow (SEH)
Adobe 9.x Related Service - (getPlus_HelperSvc.exe) Privilege Escalation
Adobe 9.x Related Service - 'getPlus_HelperSvc.exe' Privilege Escalation
Easy Music Player 1.0.0.2 - (wav) Universal Local Buffer Exploit (SEH) (1)
Easy Music Player 1.0.0.2 - (wav) Universal Local Buffer Exploit (SEH) (2)
Easy Music Player 1.0.0.2 - (wav) Universal Local Buffer Exploit (SEH) (3)
Easy Music Player 1.0.0.2 - 'wav' Universal Local Buffer Exploit (SEH) (1)
Easy Music Player 1.0.0.2 - 'wav' Universal Local Buffer Exploit (SEH) (2)
Easy Music Player 1.0.0.2 - 'wav' Universal Local Buffer Exploit (SEH) (3)
Hamster Audio Player 0.3a - (Associations.cfg) Local Buffer Exploit (SEH) (1)
Hamster Audio Player 0.3a - 'Associations.cfg' Local Buffer Exploit (SEH) (1)
Hamster Audio Player 0.3a - (Associations.cfg) Local Buffer Exploit (SEH) (2)
Hamster Audio Player 0.3a - 'Associations.cfg' Local Buffer Exploit (SEH) (2)
Spider Solitaire - (PoC)
EDraw Flowchart ActiveX Control 2.3 - (.edd parsing) Remote Buffer Overflow (PoC)
EDraw Flowchart ActiveX Control 2.3 - '.edd parsing' Remote Buffer Overflow (PoC)
Gesytec ElonFmt ActiveX 1.1.14 - (ElonFmt.ocx) pid Item Buffer Overflow (SEH)
Gesytec ElonFmt ActiveX 1.1.14 - 'ElonFmt.ocx' pid Item Buffer Overflow (SEH)
SopCast 3.4.7 - (Diagnose.exe) Improper Permissions
SopCast 3.4.7 - 'Diagnose.exe' Improper Permissions
ACE Stream Media 2.1 - (acestream://) Format String (PoC)
ACE Stream Media 2.1 - 'acestream://' Format String (PoC)
Total Video Player 1.3.1 - (Settings.ini) Buffer Overflow (SEH) (Metasploit)
Total Video Player 1.3.1 - 'Settings.ini' Buffer Overflow (SEH) (Metasploit)
RedStar 2.0 Desktop - (World-writeable rc.sysinit) Privilege Escalation
RedStar 3.0 Desktop - (Software Manager swmng.app) Privilege Escalation
RedStar 2.0 Desktop - 'World-writeable rc.sysinit' Privilege Escalation
RedStar 3.0 Desktop - 'Software Manager swmng.app' Privilege Escalation
MASM321 11 Quick Editor - (.qeditor) 4.0g- .qse SEH Based Buffer Overflow (ASLR & SAFESEH Bypass)
MASM321 11 Quick Editor - '.qeditor' 4.0g - .qse SEH Based Buffer Overflow (ASLR & SAFESEH Bypass)
ACROS Security 0patch 2016.05.19.539 - (0PatchServicex64.exe) Unquoted Service Path Privilege Escalation
ACROS Security 0patch 2016.05.19.539 - '0PatchServicex64.exe' Unquoted Service Path Privilege Escalation
Microsoft Remote Desktop Client for Mac 8.0.36 - Remote Code Execution
Solaris 2.6/7/8 - (TTYPROMPT in.telnet) Remote Authentication Bypass
Solaris 2.6/7/8 - 'TTYPROMPT in.telnet' Remote Authentication Bypass
BIND 8.2.x - (TSIG) Stack Overflow (1)
BIND 8.2.x - (TSIG) Stack Overflow (2)
BIND 8.2.x - (TSIG) Stack Overflow (3)
BIND 8.2.x - (TSIG) Stack Overflow (4)
BIND 8.2.x - 'TSIG' Stack Overflow (1)
BIND 8.2.x - 'TSIG' Stack Overflow (2)
BIND 8.2.x - 'TSIG' Stack Overflow (3)
BIND 8.2.x - 'TSIG' Stack Overflow (4)
Microsoft IIS 5.0 - (500-100.asp) Server Name Spoof Exploit
Microsoft IIS 5.0 - '500-100.asp' Server Name Spoof Exploit
phpBB 2.0.13 - (admin_styles.php) Remote Command Execution
e107 <= 0.6172 - (resetcore.php) SQL Injection
phpBB 2.0.13 - 'admin_styles.php' Remote Command Execution
e107 <= 0.6172 - 'resetcore.php' SQL Injection
Apple Mac OSX Safari Browser - (Safe File) Remote Code Execution (Metasploit)
Apple Mac OSX Safari Browser - 'Safe File' Remote Code Execution (Metasploit)
Darwin Streaming Server 4.1.2 - (parse_xml.cgi) Code Execution
Darwin Streaming Server 4.1.2 - 'parse_xml.cgi' Code Execution
Cyrus IMAPD 2.3.2 - (pop3d) Remote Buffer Overflow (1)
Cyrus IMAPD 2.3.2 - 'pop3d' Remote Buffer Overflow (1)
CesarFTP 0.99g - (MKD) Remote Buffer Overflow (Metasploit)
CesarFTP 0.99g - 'MKD' Remote Buffer Overflow (Metasploit)
Cyrus IMAPD 2.3.2 - (pop3d) Remote Buffer Overflow (2)
Cyrus IMAPD 2.3.2 - 'pop3d' Remote Buffer Overflow (2)
AIM Triton 1.0.4 - (SipXtapi) Remote Buffer Overflow (PoC)
AIM Triton 1.0.4 - 'SipXtapi' Remote Buffer Overflow (PoC)
Microsoft Internet Explorer - (MDAC) Remote Code Execution (MS06-014) (Metasploit) (2)
Cyrus IMAPD 2.3.2 - (pop3d) Remote Buffer Overflow (3)
Microsoft Internet Explorer - 'MDAC' Remote Code Execution (MS06-014) (Metasploit) (2)
Cyrus IMAPD 2.3.2 - 'pop3d' Remote Buffer Overflow (3)
IBM Director < 5.10 - (Redirect.bat) Directory Traversal
IBM Director < 5.10 - 'Redirect.bat' Directory Traversal
Microsoft Internet Explorer - (VML) Remote Buffer Overflow (SP2) (Perl)
Microsoft Internet Explorer - 'VML' Remote Buffer Overflow (SP2) (Perl)
Omni-NFS Server 5.2 - (nfsd.exe) Remote Stack Overflow (Metasploit)
Omni-NFS Server 5.2 - 'nfsd.exe' Remote Stack Overflow (Metasploit)
Allied Telesyn TFTP (AT-TFTP) Server/Daemon 1.9 - (Long Filename) Remote Buffer Overflow
Allied Telesyn TFTP (AT-TFTP) Server/Daemon 1.9 - 'Long Filename' Remote Buffer Overflow
CA BrightStor ARCserve - (msgeng.exe) Remote Heap Overflow (1)
CA BrightStor ARCserve - (msgeng.exe) Remote Heap Overflow (2)
CA BrightStor ARCserve - 'msgeng.exe' Remote Heap Overflow (1)
CA BrightStor ARCserve - 'msgeng.exe' Remote Heap Overflow (2)
Mozilla Firefox 2.0.0.1 - (location.hostname) Cross-Domain
Mozilla Firefox 2.0.0.1 - 'location.hostname' Cross-Domain
3Com TFTP Service (3CTftpSvc) 2.0.1 - (Long Transporting Mode) Exploit (Perl)
3Com TFTP Service (3CTftpSvc) 2.0.1 - Long Transporting Mode Exploit (Perl)
CA BrightStor Backup 11.5.2.0 - (Mediasvr.exe) Remote Code Exploit
CA BrightStor Backup 11.5.2.0 - 'Mediasvr.exe' Remote Code Exploit
Aircrack-NG 0.7 - (Specially Crafted 802.11 Packets) Remote Buffer Overflow
Aircrack-NG 0.7 - 'Specially Crafted 802.11 Packets' Remote Buffer Overflow
eCentrex VOIP Client module - (uacomx.ocx 2.0.1) Remote Buffer Overflow
eCentrex VOIP Client module - 'uacomx.ocx 2.0.1' Remote Buffer Overflow
Microsoft Visual Studio 6.0 - (PDWizard.ocx) Remote Command Execution
Microsoft Visual Studio 6.0 - 'PDWizard.ocx' Remote Command Execution
MySpace Uploader - (MySpaceUploader.ocx 1.0.0.4) Buffer Overflow
MySpace Uploader - 'MySpaceUploader.ocx 1.0.0.4' Buffer Overflow
Philips VOIP841 'Firmware 1.0.4.800' - Multiple Vulnerabilities
Philips VOIP841 Firmware 1.0.4.800 - Multiple Vulnerabilities
Linksys WRT54G (Firmware 1.00.9) - Security Bypass Vulnerabilities (1)
Linksys WRT54G Firmware 1.00.9 - Security Bypass Vulnerabilities (1)
Black Ice Software Annotation Plugin - (BiAnno.ocx) Buffer Overflow (2)
Black Ice Software Annotation Plugin - 'BiAnno.ocx' Buffer Overflow (2)
Linksys WRT54G (Firmware 1.00.9) - Security Bypass Vulnerabilities (2)
Linksys WRT54G Firmware 1.00.9 - Security Bypass Vulnerabilities (2)
Microsoft Access - (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit
Microsoft Access - 'Snapview.ocx 10.0.5529.0' ActiveX Remote Exploit
Amaya Web Browser 11 - (bdo tag) Remote Stack Overflow (Windows XP)
Amaya Web Browser 11 - (bdo tag) Remote Stack Overflow (Windows Vista)
Amaya Web Browser 11 (Windows XP) - bdo tag Remote Stack Overflow
Amaya Web Browser 11 (Windows Vista) - bdo tag Remote Stack Overflow
Steamcast - (HTTP Request) Remote Buffer Overflow (SEH) (1)
Steamcast - (HTTP Request) Remote Buffer Overflow (SEH) (2)
Steamcast - HTTP Request Remote Buffer Overflow (SEH) (1)
Steamcast - HTTP Request Remote Buffer Overflow (SEH) (2)
32bit FTP (09.04.24) - (CWD Response) Remote Buffer Overflow
32bit FTP (09.04.24) - 'CWD Response' Remote Buffer Overflow
32bit FTP (09.04.24) - (CWD Response) Universal Overwrite (SEH)
32bit FTP - (PASV) Reply Client Remote Overflow (Metasploit)
32bit FTP (09.04.24) - 'CWD Response' Universal Overwrite (SEH)
32bit FTP - 'PASV' Reply Client Remote Overflow (Metasploit)
Apple iTunes 8.1.1 - (ITMS) Multiple Protocol Handler Buffer Overflow (Metasploit)
Apple iTunes 8.1.1 - 'ITMS' Multiple Protocol Handler Buffer Overflow (Metasploit)
Apple iTunes 8.1.1.10 (Windows) - (itms/itcp) Remote Buffer Overflow
Apple iTunes 8.1.1.10 (Windows) - 'itms/itcp' Remote Buffer Overflow
THOMSON TG585n 7.4.3.2 - (user.ini) Arbitrary Download
THOMSON TG585n 7.4.3.2 - 'user.ini' Arbitrary Download
Adobe Flash and Reader - (PoC)
Adobe Flash and Reader - Live Malware (PoC)
Microsoft Internet Explorer - (VML) Fill Method Code Execution (MS06-055) (Metasploit)
Microsoft Internet Explorer - 'VML' Fill Method Code Execution (MS06-055) (Metasploit)
WinZip FileView - (WZFILEVIEW.FileViewCtrl.61) ActiveX Buffer Overflow (Metasploit)
WinZip FileView - 'WZFILEVIEW.FileViewCtrl.61' ActiveX Buffer Overflow (Metasploit)
CesarFTP 0.99g - (MKD) Command Buffer Overflow (Metasploit)
CesarFTP 0.99g - 'MKD' Command Buffer Overflow (Metasploit)
UltraVNC 1.0.2 Client - (vncviewer.exe) Buffer Overflow (Metasploit)
UltraVNC 1.0.2 Client - 'vncviewer.exe' Buffer Overflow (Metasploit)
Audio File Library 0.2.6 - (libaudiofile) 'msadpcm.c' WAV File Processing Buffer Overflow
Audio File Library 0.2.6 - libaudiofile 'msadpcm.c' .WAV File Processing Buffer Overflow
Linksys WRT54GC 1.5.7 - (Firmware) 'administration.cgi' Access Validation
Linksys WRT54GC 1.5.7 Firmware - 'administration.cgi' Access Validation
Cisco WebEx - 'nativeMessaging' Arbitrary Remote Command Execution
Mozilla Firefox < 50.0.2 - nsSMILTimeContainer::NotifyTimeChange() Remote Code Execution (Metasploit)
Aztek Forum 4.0 - (myadmin.php) Database Dumper Exploit
Aztek Forum 4.0 - 'myadmin.php' Database Dumper Exploit
E-Cart 1.1 - (index.cgi) Remote Command Execution
E-Cart 1.1 - 'index.cgi' Remote Command Execution
UBBCentral UBB.Threads < 6.5.2 Beta - (mailthread.php) SQL Injection
ASPNuke 0.80 - (article.asp) SQL Injection
ASPNuke 0.80 - (comment_post.asp) SQL Injection
UBBCentral UBB.Threads < 6.5.2 Beta - 'mailthread.php' SQL Injection
ASPNuke 0.80 - 'article.asp' SQL Injection
ASPNuke 0.80 - 'comment_post.asp' SQL Injection
w-Agora 4.2.0 - (quicklist.php) Remote Code Execution
w-Agora 4.2.0 - 'quicklist.php' Remote Code Execution
Cyphor 0.19 - (show.php id) SQL Injection
Cyphor 0.19 - 'show.php id' SQL Injection
eFiction 2.0 - (Fake .gif) Arbitrary File Upload
eFiction 2.0 - 'Fake .gif' Arbitrary File Upload
CuteNews 1.4.1 - (categories.mdu) Remote Command Execution
CuteNews 1.4.1 - 'categories.mdu' Remote Command Execution
FlatCMS 1.01 - (file_editor.php) Remote Command Execution
FlatCMS 1.01 - 'file_editor.php' Remote Command Execution
FCKEditor 2.0 <= 2.2 - (FileManager connector.php) Arbitrary File Upload
FCKEditor 2.0 <= 2.2 - 'FileManager connector.php' Arbitrary File Upload
FlySpray 0.9.7 - (install-0.9.7.php) Remote Commands Execution Exploit
FlySpray 0.9.7 - 'install-0.9.7.php' Remote Commands Execution Exploit
GeekLog 1.x - (error.log) Remote Commands Execution Exploit (gpc = Off)
GeekLog 1.x - 'error.log' (gpc = Off) Remote Commands Execution Exploit
phpWebSite 0.10.0-full - (topics.php) SQL Injection
phpWebSite 0.10.0-full - 'topics.php' SQL Injection
iGENUS WebMail 2.0.2 - (config_inc.php) Remote Code Execution
iGENUS WebMail 2.0.2 - 'config_inc.php' Remote Code Execution
TotalECommerce 1.0 - (index.asp id) SQL Injection
TotalECommerce 1.0 - 'index.asp id' SQL Injection
CilemNews System 1.1 - (yazdir.asp haber_id) SQL Injection
CilemNews System 1.1 - 'yazdir.asp haber_id' SQL Injection
ShoutLIVE 1.1.0 - (savesettings.php) Remote Code Execution
ShoutLIVE 1.1.0 - 'savesettings.php' Remote Code Execution
FreeWPS 2.11 - (images.php) Remote Code Execution
FreeWPS 2.11 - 'images.php' Remote Code Execution
phpBookingCalendar 1.0c - (details_view.php) SQL Injection
phpBookingCalendar 1.0c - 'details_view.php' SQL Injection
Aztek Forum 4.00 - (myadmin.php) User Privilege Escalation
Aztek Forum 4.00 - 'myadmin.php' User Privilege Escalation
Claroline 1.7.4 - (scormExport.inc.php) Remote Code Execution
Claroline 1.7.4 - 'scormExport.inc.php' Remote Code Execution
Sire 2.0 - (lire.php) Remote File Inclusion / Arbitrary File Upload
Sire 2.0 - 'lire.php' Remote File Inclusion / Arbitrary File Upload
Sphider 1.3 - (configset.php) Arbitrary Remote File Inclusion
Sphider 1.3 - 'configset.php' Arbitrary Remote File Inclusion
Censtore 7.3.x - (censtore.cgi) Remote Command Execution
quizz 1.01 - (quizz.pl) Remote Command Execution
Censtore 7.3.x - 'censtore.cgi' Remote Command Execution
quizz 1.01 - 'quizz.pl' Remote Command Execution
SysInfo 1.21 - (sysinfo.cgi) Remote Command Execution
SysInfo 1.21 - 'sysinfo.cgi' Remote Command Execution
FlexBB 0.5.5 - (/inc/start.php _COOKIE) SQL Bypass Exploit
FlexBB 0.5.5 - '/inc/start.php _COOKIE' SQL Bypass Exploit
ASPSitem 1.83 - (Haberler.asp) SQL Injection
ASPSitem 1.83 - 'Haberler.asp' SQL Injection
FlexBB 0.5.5 - (function/showprofile.php) SQL Injection
BK Forum 4.0 - (member.asp) SQL Injection
FlexBB 0.5.5 - 'function/showprofile.php' SQL Injection
BK Forum 4.0 - 'member.asp' SQL Injection
Fast Click 1.1.3 / 2.3.8 - (show.php) Remote File Inclusion
Fast Click 1.1.3 / 2.3.8 - 'show.php' Remote File Inclusion
HiveMail 1.3 - (addressbook.add.php) Remote Code Execution
VP-ASP 6.00 - (shopcurrency.asp) SQL Injection
HiveMail 1.3 - 'addressbook.add.php' Remote Code Execution
VP-ASP 6.00 - 'shopcurrency.asp' SQL Injection
Dokeos Lms 1.6.4 - (authldap.php) Remote File Inclusion
Claroline E-Learning 1.75 - (ldap.inc.php) Remote File Inclusion
Dokeos Lms 1.6.4 - 'authldap.php' Remote File Inclusion
Claroline E-Learning 1.75 - 'ldap.inc.php' Remote File Inclusion
Squirrelcart 2.2.0 - (cart_content.php) Remote File Inclusion
Squirrelcart 2.2.0 - 'cart_content.php' Remote File Inclusion
Woltlab Burning Board 2.3.5 - (links.php) SQL Injection
Woltlab Burning Board 2.3.5 - 'links.php' SQL Injection
open-medium.CMS 0.25 - (404.php) Remote File Inclusion
Back-End CMS 0.7.2.2 - (BE_config.php) Remote File Inclusion
open-medium.CMS 0.25 - '404.php' Remote File Inclusion
Back-End CMS 0.7.2.2 - 'BE_config.php' Remote File Inclusion
DoceboLms 2.0.5 - (help.php) Remote File Inclusion
DoceboLms 2.0.5 - 'help.php' Remote File Inclusion
PrideForum 1.0 - (forum.asp) SQL Injection
PrideForum 1.0 - 'forum.asp' SQL Injection
Bytehoard 2.1 - (server.php) Remote File Inclusion
Bytehoard 2.1 - 'server.php' Remote File Inclusion
Igloo 0.1.9 - (Wiki.php) Remote File Inclusion
Igloo 0.1.9 - 'Wiki.php' Remote File Inclusion
Informium 0.12.0 - (common-menu.php) Remote File Inclusion
Informium 0.12.0 - 'common-menu.php' Remote File Inclusion
DotClear 1.2.4 - (prepend.php) Arbitrary Remote File Inclusion
DotClear 1.2.4 - 'prepend.php' Arbitrary Remote File Inclusion
Wikiwig 4.1 - (wk_lang.php) Remote File Inclusion
myNewsletter 1.1.2 - (adminLogin.asp) Login Bypass
Wikiwig 4.1 - 'wk_lang.php' Remote File Inclusion
myNewsletter 1.1.2 - 'adminLogin.asp' Login Bypass
Xtreme/Ditto News 1.0 - (post.php) Remote File Inclusion
Back-End CMS 0.7.2.1 - (jpcache.php) Remote File Inclusion
Xtreme/Ditto News 1.0 - 'post.php' Remote File Inclusion
Back-End CMS 0.7.2.1 - 'jpcache.php' Remote File Inclusion
aWebNews 1.5 - (visview.php) Remote File Inclusion
aWebNews 1.5 - 'visview.php' Remote File Inclusion
PHP Blue Dragon CMS 2.9.1 - (template.php) File Inclusion
PHP Blue Dragon CMS 2.9.1 - 'template.php' File Inclusion
DreamAccount 3.1 - (auth.api.php) Remote File Inclusion
DreamAccount 3.1 - 'auth.api.php' Remote File Inclusion
RsGallery2 <= 1.11.2 - (rsgallery.html.php) File Inclusion
RsGallery2 <= 1.11.2 - 'rsgallery.html.php' File Inclusion
Plume CMS 1.1.3 - (dbinstall.php) Remote File Inclusion
Randshop 1.1.1 - (header.inc.php) Remote File Inclusion
Plume CMS 1.1.3 - 'dbinstall.php' Remote File Inclusion
Randshop 1.1.1 - 'header.inc.php' Remote File Inclusion
SQuery 4.5 - (gore.php) Remote File Inclusion
SQuery 4.5 - 'gore.php' Remote File Inclusion
FlushCMS 1.0.0-pre2 - (class.rich.php) Remote File Inclusion
FlushCMS 1.0.0-pre2 - 'class.rich.php' Remote File Inclusion
Etomite CMS 0.6.1 - (rfiles.php) Remote Command Execution
Etomite CMS 0.6.1 - 'rfiles.php' Remote Command Execution
TSEP 0.942 - (copyright.php) Remote File Inclusion
TSEP 0.942 - 'copyright.php' Remote File Inclusion
WoW Roster 1.70 - (/lib/phpBB.php) Remote File Inclusion
WoW Roster 1.70 - '/lib/phpBB.php' Remote File Inclusion
TSEP 0.942 - (colorswitch.php) Remote File Inclusion
TSEP 0.942 - 'colorswitch.php' Remote File Inclusion
SQLiteWebAdmin 0.1 - (tpl.inc.php) Remote File Inclusion
SQLiteWebAdmin 0.1 - 'tpl.inc.php' Remote File Inclusion
PHPCodeCabinet 0.5 - (Core.php) Remote File Inclusion
PHPCodeCabinet 0.5 - 'Core.php' Remote File Inclusion
See-Commerce 1.0.625 - (owimg.php3) Remote File Inclusion
See-Commerce 1.0.625 - 'owimg.php3' Remote File Inclusion
PHPMyRing 4.2.0 - (view_com.php) SQL Injection
PHPMyRing 4.2.0 - 'view_com.php' SQL Injection
VWar 1.50 R14 - (online.php) SQL Injection
VWar 1.50 R14 - 'online.php' SQL Injection
Wheatblog 1.1 - (session.php) Remote File Inclusion
Wheatblog 1.1 - 'session.php' Remote File Inclusion
PHPay 2.02 - (nu_mail.inc.php) Remote mail() Injection
PHPay 2.02 - 'nu_mail.inc.php' Remote mail() Injection
WEBInsta CMS 0.3.1 - (users.php) Remote File Inclusion
WEBInsta CMS 0.3.1 - 'users.php' Remote File Inclusion
WTcom 0.2.4-alpha - (torrents.php) SQL Injection
WTcom 0.2.4-alpha - 'torrents.php' SQL Injection
PHlyMail Lite 3.4.4 - (mod.listmail.php) Remote File Inclusion
PHlyMail Lite 3.4.4 - 'mod.listmail.php' Remote File Inclusion
LBlog 1.05 - (comments.asp) SQL Injection
LBlog 1.05 - 'comments.asp' SQL Injection
PHlyMail Lite 3.4.4 - (folderprops.php) Remote File Inclusion (2)
Empire CMS 3.7 - (checklevel.php) Remote File Inclusion
PHlyMail Lite 3.4.4 - 'folderprops.php' Remote File Inclusion (2)
Empire CMS 3.7 - 'checklevel.php' Remote File Inclusion
VistaBB 2.x - (functions_mod_user.php) Remote File Inclusion
VistaBB 2.x - 'functions_mod_user.php' Remote File Inclusion
PHPCOIN 1.2.3 - (session_set.php) Remote File Inclusion
PHPCOIN 1.2.3 - 'session_set.php' Remote File Inclusion
FlashChat 4.5.7 - (aedating4CMS.php) Remote File Inclusion
FlashChat 4.5.7 - 'aedating4CMS.php' Remote File Inclusion
Beautifier 0.1 - (Core.php) Remote File Inclusion
Beautifier 0.1 - 'Core.php' Remote File Inclusion
Q-Shop 3.5 - (browse.asp) SQL Injection
Q-Shop 3.5 - 'browse.asp' SQL Injection
Charon Cart 3.0 - (Review.asp) SQL Injection
CMtextS 1.0 - (users_logins/admin.txt) Credentials Disclosure
Charon Cart 3.0 - 'Review.asp' SQL Injection
CMtextS 1.0 - 'users_logins/admin.txt' Credentials Disclosure
PHPartenaire 1.0 - (dix.php3) Remote File Inclusion
PHPartenaire 1.0 - 'dix.php3' Remote File Inclusion
ProgSys 0.156 - (RR.php) Remote File Inclusion
ProgSys 0.156 - 'RR.php' Remote File Inclusion
xweblog 2.1 - (kategori.asp) SQL Injection
xweblog 2.1 - 'kategori.asp' SQL Injection
Web-News 1.6.3 - (template.php) Remote File Inclusion
Web-News 1.6.3 - 'template.php' Remote File Inclusion
Advaced-Clan-Script 3.4 - (mcf.php) Remote File Inclusion
Advaced-Clan-Script 3.4 - 'mcf.php' Remote File Inclusion
SyntaxCMS 1.3 - (0004_init_urls.php) Remote File Inclusion
Polaring 0.04.03 - (general.php) Remote File Inclusion
SyntaxCMS 1.3 - '0004_init_urls.php' Remote File Inclusion
Polaring 0.04.03 - 'general.php' Remote File Inclusion
BrudaNews 1.1 - (admin/index.php) Remote File Inclusion
BrudaGB 1.1 - (admin/index.php) Remote File Inclusion
faceStones personal 2.0.42 - (fs_form_links.php) File Inclusion
BrudaNews 1.1 - 'admin/index.php' Remote File Inclusion
BrudaGB 1.1 - 'admin/index.php' Remote File Inclusion
faceStones personal 2.0.42 - 'fs_form_links.php' File Inclusion
Kietu? <= 4.0.0b2 - (hit.php) Remote File Inclusion
Newswriter SW 1.42 - (editfunc.inc.php) File Inclusion
Kietu? <= 4.0.0b2 - 'hit.php' Remote File Inclusion
Newswriter SW 1.42 - 'editfunc.inc.php' File Inclusion
Newswriter SW 1.4.2 - (main.inc.php) Remote File Inclusion
PPA Gallery 1.0 - (functions.inc.php) Remote File Inclusion
Newswriter SW 1.4.2 - 'main.inc.php' Remote File Inclusion
PPA Gallery 1.0 - 'functions.inc.php' Remote File Inclusion
phpMyWebmin 1.0 - (window.php) Remote File Inclusion
PHPSecurePages 0.28b - (secure.php) Remote File Inclusion
phpMyWebmin 1.0 - 'window.php' Remote File Inclusion
PHPSecurePages 0.28b - 'secure.php' Remote File Inclusion
PHP Krazy Image Hosting 0.7a - (display.php) SQL Injection
UBB.Threads 6.5.1.1 - (doeditconfig.php) Code Execution
PHP Krazy Image Hosting 0.7a - 'display.php' SQL Injection
UBB.Threads 6.5.1.1 - 'doeditconfig.php' Code Execution
VAMP Webmail 2.0beta1 - (yesno.phtml) Remote File Inclusion
VAMP Webmail 2.0beta1 - 'yesno.phtml' Remote File Inclusion
BBaCE 3.5 - (includes/functions.php) Remote File Inclusion
BBaCE 3.5 - 'includes/functions.php' Remote File Inclusion
Klinza Professional CMS 5.0.1 - (show_hlp.php) File Inclusion
Klinza Professional CMS 5.0.1 - 'show_hlp.php' File Inclusion
PHPGreetz 0.99 - (footer.php) Remote File Inclusion
PHPGreetz 0.99 - 'footer.php' Remote File Inclusion
phpBB Security Suite Mod 1.0.0 - (logger_engine.php) Remote File Inclusion
phpBB Security Suite Mod 1.0.0 - 'logger_engine.php' Remote File Inclusion
Cahier de texte 2.0 - (lire.php) SQL Injection
Cahier de texte 2.0 - 'lire.php' SQL Injection
PHPPC 1.03 RC1 - (/lib/functions.inc.php) Remote File Inclusion
docmint 2.0 - (engine/require.php) Remote File Inclusion
PHPPC 1.03 RC1 - '/lib/functions.inc.php' Remote File Inclusion
docmint 2.0 - 'engine/require.php' Remote File Inclusion
phpMyAgenda 3.1 - (templates/header.php3) Local File Inclusion
TribunaLibre 3.12 Beta - (ftag.php) Remote File Inclusion
phpMyAgenda 3.1 - 'templates/header.php3' Local File Inclusion
TribunaLibre 3.12 Beta - 'ftag.php' Remote File Inclusion
compteur 2.0 - (param_editor.php) Remote File Inclusion
compteur 2.0 - 'param_editor.php' Remote File Inclusion
Foafgen 0.3 - (redir.php) Local Source Disclosure
Foafgen 0.3 - 'redir.php' Local Source Disclosure
Exhibit Engine 1.5 RC 4 - (photo_comment.php) File Inclusion
Claroline 1.8.0 rc1 - (import.lib.php) Remote File Inclusion
PHPLibrary 1.5.3 - (grid3.lib.php) Remote File Inclusion
Jinzora 2.1 - (media.php) Remote File Inclusion
ae2 - (standart.inc.php) Remote File Inclusion
n@board 3.1.9e - (naboard_pnr.php) Remote File Inclusion
CommunityPortals 1.0 - (import-archive.php) File Inclusion
PHP News Reader 2.6.4 - (phpBB.inc.php) Remote File Inclusion
Exhibit Engine 1.5 RC 4 - 'photo_comment.php' File Inclusion
Claroline 1.8.0 rc1 - 'import.lib.php' Remote File Inclusion
PHPLibrary 1.5.3 - 'grid3.lib.php' Remote File Inclusion
Jinzora 2.1 - 'media.php' Remote File Inclusion
ae2 - 'standart.inc.php' Remote File Inclusion
n@board 3.1.9e - 'naboard_pnr.php' Remote File Inclusion
CommunityPortals 1.0 - 'import-archive.php' File Inclusion
PHP News Reader 2.6.4 - 'phpBB.inc.php' Remote File Inclusion
Minichat 6.0 - (ftag.php) Remote File Inclusion
Minichat 6.0 - 'ftag.php' Remote File Inclusion
PHPMyConferences 8.0.2 - (menu.inc.php) File Inclusion
PHPMyConferences 8.0.2 - 'menu.inc.php' File Inclusion
maluinfo 206.2.38 - (bb_usage_stats.php) Remote File Inclusion
phpBB PlusXL 2.0_272 - (constants.php) Remote File Inclusion
Genepi 1.6 - (genepi.php) Remote File Inclusion
Cdsagenda 4.2.9 - (SendAlertEmail.php) File Inclusion
maluinfo 206.2.38 - 'bb_usage_stats.php' Remote File Inclusion
phpBB PlusXL 2.0_272 - 'constants.php' Remote File Inclusion
Genepi 1.6 - 'genepi.php' Remote File Inclusion
Cdsagenda 4.2.9 - 'SendAlertEmail.php' File Inclusion
phpBB lat2cyr Mod 1.0.1 - (lat2cyr.php) Remote File Inclusion
phpBB lat2cyr Mod 1.0.1 - 'lat2cyr.php' Remote File Inclusion
phpBB Security 1.0.1 - (PHP_security.php) Remote File Inclusion
YaBBSM 3.0.0 - (Offline.php) Remote File Inclusion
phpBB Security 1.0.1 - 'PHP_security.php' Remote File Inclusion
YaBBSM 3.0.0 - 'Offline.php' Remote File Inclusion
IncCMS Core 1.0.0 - (settings.php) Remote File Inclusion
Jinzora 2.6 - (extras/mt.php) Remote File Inclusion
CyberBrau 0.9.4 - (forum/track.php) Remote File Inclusion
IncCMS Core 1.0.0 - 'settings.php' Remote File Inclusion
Jinzora 2.6 - 'extras/mt.php' Remote File Inclusion
CyberBrau 0.9.4 - 'forum/track.php' Remote File Inclusion
NuralStorm Webmail 0.98b - (process.php) Remote File Inclusion
NuralStorm Webmail 0.98b - 'process.php' Remote File Inclusion
Def-Blog 1.0.3 - (comadd.php) SQL Injection
Def-Blog 1.0.3 - 'comadd.php' SQL Injection
PHPMyManga 0.8.1 - (template.php) Multiple File Inclusion
PHPMyManga 0.8.1 - 'template.php' Multiple File Inclusion
WSN Forum 1.3.4 - (prestart.php) Remote Code Execution
WSN Forum 1.3.4 - 'prestart.php' Remote Code Execution
PHPPowerCards 2.10 - (txt.inc.php) Remote Code Execution
PHP AMX 0.90 - (plugins/main.php) Remote File Inclusion
PHPPowerCards 2.10 - 'txt.inc.php' Remote Code Execution
PHP AMX 0.90 - 'plugins/main.php' Remote File Inclusion
YapBB 1.2 Beta2 - (yapbb_session.php) Remote File Inclusion
LoCal Calendar 1.1 - (lcUser.php) Remote File Inclusion
EPNadmin 0.7 - (constantes.inc.php) Remote File Inclusion
PH Pexplorer 0.24 - (explorer_load_lang.php) Local File Inclusion
YapBB 1.2 Beta2 - 'yapbb_session.php' Remote File Inclusion
LoCal Calendar 1.1 - 'lcUser.php' Remote File Inclusion
EPNadmin 0.7 - 'constantes.inc.php' Remote File Inclusion
PH Pexplorer 0.24 - 'explorer_load_lang.php' Local File Inclusion
Lou Portail 1.4.1 - (admin_module.php) Remote File Inclusion
WGCC 0.5.6b - (quiz.php) SQL Injection
Lou Portail 1.4.1 - 'admin_module.php' Remote File Inclusion
WGCC 0.5.6b - 'quiz.php' SQL Injection
CASTOR 1.1.1 - (lib/rs.php) Remote File Inclusion
CASTOR 1.1.1 - 'lib/rs.php' Remote File Inclusion
Net_DNS 0.3 - (DNS/RR.php) Remote File Inclusion
Net_DNS 0.3 - 'DNS/RR.php' Remote File Inclusion
SourceForge 1.0.4 - (database.php) Remote File Inclusion
SourceForge 1.0.4 - 'database.php' Remote File Inclusion
Jaws 0.5.2 - (include/JawsDB.php) Remote File Inclusion
JumbaCMS 0.0.1 - (includes/functions.php) Remote File Inclusion
InteliEditor 1.2.x - (lib.editor.inc.php) Remote File Inclusion
Ascended Guestbook 1.0.0 - (embedded.php) File Inclusion
Jaws 0.5.2 - 'include/JawsDB.php' Remote File Inclusion
JumbaCMS 0.0.1 - 'includes/functions.php' Remote File Inclusion
InteliEditor 1.2.x - 'lib.editor.inc.php' Remote File Inclusion
Ascended Guestbook 1.0.0 - 'embedded.php' File Inclusion
UeberProject 1.0 - (login/secure.php) Remote File Inclusion
UeberProject 1.0 - 'login/secure.php' Remote File Inclusion
TextPattern 1.19 - (publish.php) Remote File Inclusion
TextPattern 1.19 - 'publish.php' Remote File Inclusion
ask_rave 0.9 PR - (end.php footfile) Remote File Inclusion
ask_rave 0.9 PR - 'end.php footfile' Remote File Inclusion
PHP League 0.82 - (classement.php) SQL Injection
PHP League 0.82 - 'classement.php' SQL Injection
PHPMyDesk 1.0 Beta - (viewticket.php) Local File Inclusion
PHPMyDesk 1.0 Beta - 'viewticket.php' Local File Inclusion
mp3SDS 3.0 - (Core/core.inc.php) Remote File Inclusion
mp3SDS 3.0 - 'Core/core.inc.php' Remote File Inclusion
MiraksGalerie 2.62 - (pcltar.lib.php) Remote File Inclusion
Free Image Hosting 1.0 - (forgot_pass.php) File Inclusion
Free File Hosting 1.1 - (forgot_pass.php) File Inclusion
MiraksGalerie 2.62 - 'pcltar.lib.php' Remote File Inclusion
Free Image Hosting 1.0 - 'forgot_pass.php' File Inclusion
Free File Hosting 1.1 - 'forgot_pass.php' File Inclusion
MySource CMS 2.16.2 - (init_mysource.php) Remote File Inclusion
MySource CMS 2.16.2 - 'init_mysource.php' Remote File Inclusion
Faq Administrator 2.1 - (faq_reply.php) Remote File Inclusion
PHPMyRing 4.2.1 - (cherche.php) SQL Injection
Faq Administrator 2.1 - 'faq_reply.php' Remote File Inclusion
PHPMyRing 4.2.1 - 'cherche.php' SQL Injection
PwsPHP 1.1 - (themes/fin.php) Remote File Inclusion
T.G.S. CMS 0.1.7 - (logout.php) SQL Injection
PwsPHP 1.1 - 'themes/fin.php' Remote File Inclusion
T.G.S. CMS 0.1.7 - 'logout.php' SQL Injection
Innovate Portal 2.0 - (acp.php) Remote Code Execution
Innovate Portal 2.0 - 'acp.php' Remote Code Execution
Lithium CMS 4.04c - (classes/index.php) Local File Inclusion
Article System 0.6 - (volume.php) Remote File Inclusion
Lithium CMS 4.04c - 'classes/index.php' Local File Inclusion
Article System 0.6 - 'volume.php' Remote File Inclusion
Ultimate PHP Board 2.0 - (header_simple.php) File Inclusion
Ultimate PHP Board 2.0 - 'header_simple.php' File Inclusion
iWare Pro 5.0.4 - (chat_panel.php) Remote Code Execution
PHPAdventure 1.1 - (ad_main.php) Remote File Inclusion
iWare Pro 5.0.4 - 'chat_panel.php' Remote Code Execution
PHPAdventure 1.1 - 'ad_main.php' Remote File Inclusion
IrayoBlog 0.2.4 - (inc/irayofuncs.php) Remote File Inclusion
IrayoBlog 0.2.4 - 'inc/irayofuncs.php' Remote File Inclusion
AspPired2Poll 1.0 - (MoreInfo.asp) SQL Injection
MyAlbum 3.02 - (language.inc.php) Remote File Inclusion
PHPManta 1.0.2 - (view-sourcecode.php) Local File Inclusion
EncapsCMS 0.3.6 - (core/core.php) Remote File Inclusion
AspPired2Poll 1.0 - 'MoreInfo.asp' SQL Injection
MyAlbum 3.02 - 'language.inc.php' Remote File Inclusion
PHPManta 1.0.2 - 'view-sourcecode.php' Local File Inclusion
EncapsCMS 0.3.6 - 'core/core.php' Remote File Inclusion
NuCommunity 1.0 - (cl_CatListing.asp) SQL Injection
NuRems 1.0 - (propertysdetails.asp) SQL Injection
NuStore 1.0 - (Products.asp) SQL Injection
NuSchool 1.0 - (CampusNewsDetails.asp) SQL Injection
NuCommunity 1.0 - 'cl_CatListing.asp' SQL Injection
NuRems 1.0 - 'propertysdetails.asp' SQL Injection
NuStore 1.0 - 'Products.asp' SQL Injection
NuSchool 1.0 - 'CampusNewsDetails.asp' SQL Injection
Munch Pro 1.0 - (switch.asp) SQL Injection
Munch Pro 1.0 - 'switch.asp' SQL Injection
UStore 1.0 - (detail.asp) SQL Injection
USupport 1.0 - (detail.asp) SQL Injection
UPublisher 1.0 - (viewarticle.asp) SQL Injection
UStore 1.0 - 'detail.asp' SQL Injection
USupport 1.0 - 'detail.asp' SQL Injection
UPublisher 1.0 - 'viewarticle.asp' SQL Injection
Quick.Cart 2.0 - (actions_client/gallery.php) Local File Inclusion
Online Event Registration 2.0 - (save_profile.asp) Pass Change Exploit
Quick.Cart 2.0 - 'actions_client/gallery.php' Local File Inclusion
Online Event Registration 2.0 - 'save_profile.asp' Pass Change Exploit
Property Pro 1.0 - (vir_Login.asp) Remote Login Bypass
Property Pro 1.0 - 'vir_Login.asp' Remote Login Bypass
PHPPeanuts 1.3 Beta - (Inspect.php) Remote File Inclusion
PHPPeanuts 1.3 Beta - 'Inspect.php' Remote File Inclusion
NetVIOS 2.0 - (page.asp) SQL Injection
NetVIOS 2.0 - 'page.asp' SQL Injection
Etomite CMS 0.6.1.2 - (manager/index.php) Local File Inclusion
Etomite CMS 0.6.1.2 - 'manager/index.php' Local File Inclusion
miniCWB 1.0.0 - (contact.php) Local File Inclusion
miniCWB 1.0.0 - 'contact.php' Local File Inclusion
Powies MatchMaker 4.05 - (matchdetail.php) SQL Injection
mxBB Module calsnails 1.06 - (mx_common.php) File Inclusion
Powies MatchMaker 4.05 - 'matchdetail.php' SQL Injection
mxBB Module calsnails 1.06 - 'mx_common.php' File Inclusion
Dicshunary 0.1a - (check_status.php) Remote File Inclusion
Dicshunary 0.1a - 'check_status.php' Remote File Inclusion
PHPWebThings 1.5.2 - (editor.php) Remote File Inclusion
PHPWebThings 1.5.2 - 'editor.php' Remote File Inclusion
ASPNuke 0.80 - (register.asp) SQL Injection
ASPNuke 0.80 - 'register.asp' SQL Injection
Photo Cart 3.9 - (adminprint.php) Remote File Inclusion
e-Ark 1.0 - (src/ark_inc.php) Remote File Inclusion
Photo Cart 3.9 - 'adminprint.php' Remote File Inclusion
e-Ark 1.0 - 'src/ark_inc.php' Remote File Inclusion
fipsGallery 1.5 - (index1.asp) SQL Injection
fipsForum 2.6 - (default2.asp) SQL Injection
fipsGallery 1.5 - 'index1.asp' SQL Injection
fipsForum 2.6 - 'default2.asp' SQL Injection
JiRos FAQ Manager 1.0 - (index.asp) SQL Injection
HSRS 1.0 - (addcode.php) Remote File Inclusion
OWLLib 1.0 - (OWLMemoryProperty.php) Remote File Inclusion
JiRos FAQ Manager 1.0 - 'index.asp' SQL Injection
HSRS 1.0 - 'addcode.php' Remote File Inclusion
OWLLib 1.0 - 'OWLMemoryProperty.php' Remote File Inclusion
Basic Forum 1.1 - (edit.asp) SQL Injection
Basic Forum 1.1 - 'edit.asp' SQL Injection
Exhibit Engine 1.22 - (styles.php) Remote File Inclusion
Exhibit Engine 1.22 - 'styles.php' Remote File Inclusion
SimpleBlog 2.3 - (admin/edit.asp) SQL Injection
SimpleBlog 2.3 - 'admin/edit.asp' SQL Injection
P-News 2.0 - (user.txt) Remote Password Disclosure
P-News 2.0 - 'user.txt' Remote Password Disclosure
b2evolution 1.8.5 < 1.9b - (import-mt.php) Remote File Inclusion
b2evolution 1.8.5 < 1.9b - 'import-mt.php' Remote File Inclusion
LDU 8.x - (polls.php) SQL Injection
LDU 8.x - 'polls.php' SQL Injection
ContentServ 4.x - (admin/FileServer.php) File Disclosure
ContentServ 4.x - 'admin/FileServer.php' File Disclosure
PHP Upload Center 2.0 - (activate.php) File Inclusion
PHP Upload Center 2.0 - 'activate.php' File Inclusion
QuickCart 2.0 - (categories.php) Local File Inclusion
QuickCart 2.0 - 'categories.php' Local File Inclusion
ThinkEdit 1.9.2 - (render.php) Remote File Inclusion
ThinkEdit 1.9.2 - 'render.php' Remote File Inclusion
TorrentFlux 2.2 - (downloaddetails.php) Local File Disclosure
TorrentFlux 2.2 - (maketorrent.php) Remote Command Execution
TorrentFlux 2.2 - 'downloaddetails.php' Local File Disclosure
TorrentFlux 2.2 - 'maketorrent.php' Remote Command Execution
HR Assist 1.05 - (vdateUsr.asp) Remote Login Bypass
PHPAlbum 0.4.1 Beta 6 - (language.php) Local File Inclusion
HR Assist 1.05 - 'vdateUsr.asp' Remote Login Bypass
PHPAlbum 0.4.1 Beta 6 - 'language.php' Local File Inclusion
Barman 0.0.1r3 - (Interface.php) Remote File Inclusion
Barman 0.0.1r3 - 'Interface.php' Remote File Inclusion
Blog:CMS 4.1.3 - (NP_UserSharing.php) Remote File Inclusion
Blog:CMS 4.1.3 - 'NP_UserSharing.php' Remote File Inclusion
PHPMyCMS 0.3 - (basic.inc.php) Remote File Inclusion
yaplap 0.6.1b - (ldap.php) Remote File Inclusion
PHPMyCMS 0.3 - 'basic.inc.php' Remote File Inclusion
yaplap 0.6.1b - 'ldap.php' Remote File Inclusion
Azucar CMS 1.3 - (admin/index_sitios.php) File Inclusion
Azucar CMS 1.3 - 'admin/index_sitios.php' File Inclusion
RateMe 1.3.2 - (main.inc.php) Remote File Inclusion
RateMe 1.3.2 - 'main.inc.php' Remote File Inclusion
Paristemi 0.8.3b - (buycd.php) Remote File Inclusion
Paristemi 0.8.3b - 'buycd.php' Remote File Inclusion
cwmVote 1.0 - (archive.php) Remote File Inclusion
cwmCounter 5.1.1 - (statistic.php) Remote File Inclusion
cwmVote 1.0 - 'archive.php' Remote File Inclusion
cwmCounter 5.1.1 - 'statistic.php' Remote File Inclusion
TextSend 1.5 - (config/sender.php) Remote File Inclusion
TextSend 1.5 - 'config/sender.php' Remote File Inclusion
PHP/Mysql Site Builder 0.0.2 - (htm2PHP.php) File Disclosure
Newxooper-PHP 0.9.1 - (mapage.php) Remote File Inclusion
PHP/Mysql Site Builder 0.0.2 - 'htm2PHP.php' File Disclosure
Newxooper-PHP 0.9.1 - 'mapage.php' Remote File Inclusion
inertianews 0.02b - (inertianews_main.php) Remote File Inclusion
inertianews 0.02b - 'inertianews_main.php' Remote File Inclusion
EternalMart Guestbook 1.10 - (admin/auth.php) Remote File Inclusion
EternalMart Guestbook 1.10 - 'admin/auth.php' Remote File Inclusion
b2 Blog 0.5 - (b2verifauth.php) Remote File Inclusion
b2 Blog 0.5 - 'b2verifauth.php' Remote File Inclusion
Enthrallweb ePhotos 1.0 - (subLevel2.asp) SQL Injection
Enthrallweb ePhotos 1.0 - 'subLevel2.asp' SQL Injection
Enthrallweb eCars 1.0 - (types.asp) SQL Injection
Enthrallweb emates 1.0 - (newsdetail.asp) SQL Injection
Enthrallweb eCars 1.0 - 'types.asp' SQL Injection
Enthrallweb emates 1.0 - 'newsdetail.asp' SQL Injection
Enthrallweb eCoupons 1.0 - (myprofile.asp) Remote Pass Change Exploit
Enthrallweb eCoupons 1.0 - 'myprofile.asp' Remote Pass Change Exploit
File Upload Manager 1.0.6 - (detail.asp) SQL Injection
File Upload Manager 1.0.6 - 'detail.asp' SQL Injection
Ultimate PHP Board 2.0b1 - (chat/login.php) Code Execution
Pagetool CMS 1.07 - (pt_upload.php) Remote File Inclusion
Ultimate PHP Board 2.0b1 - 'chat/login.php' Code Execution
Pagetool CMS 1.07 - 'pt_upload.php' Remote File Inclusion
HLStats 1.34 - (hlstats.php) SQL Injection
HLStats 1.34 - 'hlstats.php' SQL Injection
eNdonesia 8.4 - (mod.php/friend.php/admin.php) Multiple Vulnerabilities
MTCMS 2.0 - (admin/admin_settings.php) Remote File Inclusion
eNdonesia 8.4 - 'mod.php/friend.php/admin.php' Multiple Vulnerabilities
MTCMS 2.0 - 'admin/admin_settings.php' Remote File Inclusion
Okul Merkezi Portal 1.0 - (ataturk.php) Remote File Inclusion
Okul Merkezi Portal 1.0 - 'ataturk.php' Remote File Inclusion
PHP-Update 2.7 - (admin/uploads.php) Remote Code Execution
Yrch 1.0 - (plug.inc.php path Variable) Remote File Inclusion
Bubla 1.0.0rc2 - (bu/process.php) Remote File Inclusion
PHP-Update 2.7 - 'admin/uploads.php' Remote Code Execution
Yrch 1.0 - 'plug.inc.php path Variable' Remote File Inclusion
Bubla 1.0.0rc2 - 'bu/process.php' Remote File Inclusion
aFAQ 1.0 - (faqDsp.asp catcode) SQL Injection
aFAQ 1.0 - 'faqDsp.asp catcode' SQL Injection
x-news 1.1 - (users.txt) Remote Password Disclosure
Voodoo chat 1.0RC1b - (users.dat) Password Disclosure
x-news 1.1 - 'users.txt' Remote Password Disclosure
Voodoo chat 1.0RC1b - 'users.dat' Password Disclosure
SoftArtisans SAFileUp 5.0.14 - (viewsrc.asp) Script Source Disclosure
FreeStyle Wiki 3.6.2 - (user.dat) Password Disclosure
SoftArtisans SAFileUp 5.0.14 - 'viewsrc.asp' Script Source Disclosure
FreeStyle Wiki 3.6.2 - 'user.dat' Password Disclosure
P-News 1.16 / 1.17 - (user.dat) Remote Password Disclosure
P-News 1.16 / 1.17 - 'user.dat' Remote Password Disclosure
RBlog 1.0 - (admin.mdb) Remote Password Disclosure
RBlog 1.0 - 'admin.mdb' Remote Password Disclosure
AutoDealer 2.0 - (detail.asp iPro) SQL Injection
WWWBoard 2.0 - (passwd.txt) Remote Password Disclosure
AutoDealer 2.0 - 'detail.asp iPro' SQL Injection
WWWBoard 2.0 - 'passwd.txt' Remote Password Disclosure
TaskTracker 1.5 - (Customize.asp) Remote Add Administrator Exploit
TaskTracker 1.5 - 'Customize.asp' Remote Add Administrator Exploit
VerliAdmin 0.3 - (language.php) Local File Inclusion
VerliAdmin 0.3 - 'language.php' Local File Inclusion
Aratix 0.2.2b11 - (inc/init.inc.php) Remote File Inclusion
Aratix 0.2.2b11 - 'inc/init.inc.php' Remote File Inclusion
iG Calendar 1.0 - (user.php id Variable) SQL Injection
iG Calendar 1.0 - 'user.php id Variable' SQL Injection
LunarPoll 1.0 - (show.php PollDir) Remote File Inclusion
TLM CMS 1.1 - (i-accueil.php chemin) Remote File Inclusion
Mint Haber Sistemi 2.7 - (duyuru.asp id) SQL Injection
LunarPoll 1.0 - 'show.php PollDir' Remote File Inclusion
TLM CMS 1.1 - 'i-accueil.php chemin' Remote File Inclusion
Mint Haber Sistemi 2.7 - 'duyuru.asp id' SQL Injection
KGB 1.9 - (sesskglogadmin.php) Local File Inclusion
KGB 1.9 - 'sesskglogadmin.php' Local File Inclusion
MGB 0.5.4.5 - (email.php id Variable) SQL Injection
MGB 0.5.4.5 - 'email.php id Variable' SQL Injection
PHPMyphorum 1.5a - (mep/frame.php) Remote File Inclusion
PHPMyphorum 1.5a - 'mep/frame.php' Remote File Inclusion
Oreon 1.2.3 RC4 - (lang/index.php) Remote File Inclusion
ComVironment 4.0 - (grab_globals.lib.php) Remote File Inclusion
Oreon 1.2.3 RC4 - 'lang/index.php' Remote File Inclusion
ComVironment 4.0 - 'grab_globals.lib.php' Remote File Inclusion
PHPSherpa - (include/config.inc.php) Remote File Inclusion
Bradabra 2.0.5 - (include/includes.php) Remote File Inclusion
Neon Labs Website 3.2 - (nl.php g_strRootDir) Remote File Inclusion
PHPSherpa - 'include/config.inc.php' Remote File Inclusion
Bradabra 2.0.5 - 'include/includes.php' Remote File Inclusion
Neon Labs Website 3.2 - 'nl.php g_strRootDir' Remote File Inclusion
MySpeach 2.1b - (up.php) Remote File Inclusion
WebChat 0.77 - (defines.php WEBCHATPATH) Remote File Inclusion
Mafia Scum Tools 2.0.0 - (index.php gen) Remote File Inclusion
MySpeach 2.1b - 'up.php' Remote File Inclusion
WebChat 0.77 - 'defines.php WEBCHATPATH' Remote File Inclusion
Mafia Scum Tools 2.0.0 - 'index.php gen' Remote File Inclusion
Upload Service 1.0 - (top.php maindir) Remote File Inclusion
Upload Service 1.0 - 'top.php maindir' Remote File Inclusion
Vote-Pro 4.0 - (poll_frame.php poll_id) Remote Code Execution
BBClone 0.31 - (selectlang.php) Remote File Inclusion
Vote-Pro 4.0 - 'poll_frame.php poll_id' Remote Code Execution
BBClone 0.31 - 'selectlang.php' Remote File Inclusion
RPW 1.0.2 - (config.php sql_language) Remote File Inclusion
ASP EDGE 1.2b - (user.asp) SQL Injection
ASP NEWS 3.0 - (news_detail.asp) SQL Injection
RPW 1.0.2 - 'config.php sql_language' Remote File Inclusion
ASP EDGE 1.2b - 'user.asp' SQL Injection
ASP NEWS 3.0 - 'news_detail.asp' SQL Injection
GPS CMS 1.2 - (print.asp) SQL Injection
GPS CMS 1.2 - 'print.asp' SQL Injection
Virtual Path 1.0 - (vp/configure.php) Remote File Inclusion
MyPHPcommander 2.0 - (package.php) Remote File Inclusion
AINS 0.02b - (ains_main.php ains_path) Remote File Inclusion
Virtual Path 1.0 - 'vp/configure.php' Remote File Inclusion
MyPHPcommander 2.0 - 'package.php' Remote File Inclusion
AINS 0.02b - 'ains_main.php ains_path' Remote File Inclusion
nsGalPHP - (includes/config.inc.php racineTBS) Remote File Inclusion
nsGalPHP - 'includes/config.inc.php racineTBS' Remote File Inclusion
PHPMyReports 3.0.11 - (lib_head.php) Remote File Inclusion
PHPMyReports 3.0.11 - 'lib_head.php' Remote File Inclusion
xNews 1.3 - (xNews.php) SQL Injection
xNews 1.3 - 'xNews.php' SQL Injection
Webfwlog 0.92 - (debug.php) Remote File Disclosure
Galeria Zdjec 3.0 - (zd_numer.php) Local File Inclusion
Webfwlog 0.92 - 'debug.php' Remote File Disclosure
Galeria Zdjec 3.0 - 'zd_numer.php' Local File Inclusion
MyNews 4.2.2 - (themefunc.php) Remote File Inclusion
MyNews 4.2.2 - 'themefunc.php' Remote File Inclusion
SIPS 0.3.1 - (box.inc.php) Remote File Inclusion
SIPS 0.3.1 - 'box.inc.php' Remote File Inclusion
Epistemon 1.0 - (common.php inc_path) Remote File Inclusion
WebBuilder 2.0 - (StageLoader.php) Remote File Inclusion
Epistemon 1.0 - 'common.php inc_path' Remote File Inclusion
WebBuilder 2.0 - 'StageLoader.php' Remote File Inclusion
Flipper Poll 1.1.0 - (poll.php root_path) Remote File Inclusion
Flipper Poll 1.1.0 - 'poll.php root_path' Remote File Inclusion
Photo Galerie Standard 1.1 - (view.php) SQL Injection
Woltlab Burning Board Lite 1.0.2pl3e - (pms.php) SQL Injection
KDPics 1.11 - (exif.php lib_path) Remote File Inclusion
Flip 2.01 final - (previewtheme.php inc_path) Remote File Inclusion
Photo Galerie Standard 1.1 - 'view.php' SQL Injection
Woltlab Burning Board Lite 1.0.2pl3e - 'pms.php' SQL Injection
KDPics 1.11 - 'exif.php lib_path' Remote File Inclusion
Flip 2.01 final - 'previewtheme.php inc_path' Remote File Inclusion
SMA-DB 0.3.9 - (settings.php) Remote File Inclusion
SMA-DB 0.3.9 - 'settings.php' Remote File Inclusion
LightRO CMS 1.0 - (inhalt.php) Remote File Inclusion
LightRO CMS 1.0 - 'inhalt.php' Remote File Inclusion
AgerMenu 0.01 - (top.inc.php rootdir) Remote File Inclusion
WebMatic 2.6 - (index_album.php) Remote File Inclusion
AgerMenu 0.01 - 'top.inc.php rootdir' Remote File Inclusion
WebMatic 2.6 - 'index_album.php' Remote File Inclusion
LightRO CMS 1.0 - (index.php projectid) SQL Injection
LightRO CMS 1.0 - 'index.php projectid' SQL Injection
LushiWarPlaner 1.0 - (register.php) SQL Injection
LushiWarPlaner 1.0 - 'register.php' SQL Injection
philboard 1.14 - (philboard_forum.asp) SQL Injection
philboard 1.14 - 'philboard_forum.asp' SQL Injection
Xaran CMS 2.0 - (xarancms_haupt.php) SQL Injection
PHPCC 4.2 Beta - (nickpage.php npid) SQL Injection
Xaran CMS 2.0 - 'xarancms_haupt.php' SQL Injection
PHPCC 4.2 Beta - 'nickpage.php npid' SQL Injection
PollMentor 2.0 - (pollmentorres.asp id) SQL Injection
PollMentor 2.0 - 'pollmentorres.asp id' SQL Injection
nabopoll 1.2 - (survey.inc.php path) Remote File Inclusion
nabopoll 1.2 - 'survey.inc.php path' Remote File Inclusion
Snitz Forums 2000 3.1 SR4 - (pop_profile.asp) SQL Injection
Snitz Forums 2000 3.1 SR4 - 'pop_profile.asp' SQL Injection
Xpression News 1.0.1 - (archives.php) Remote File Disclosure
Xpression News 1.0.1 - 'archives.php' Remote File Disclosure
Ultimate Fun Book 1.02 - (function.php) Remote File Inclusion
NukeSentinel 2.5.05 - (nsbypass.php) Blind SQL Injection
NukeSentinel 2.5.05 - (nukesentinel.php) File Disclosure
Ultimate Fun Book 1.02 - 'function.php' Remote File Inclusion
NukeSentinel 2.5.05 - 'nsbypass.php' Blind SQL Injection
NukeSentinel 2.5.05 - 'nukesentinel.php' File Disclosure
Nabopoll 1.2 - (result.php surv) Blind SQL Injection
Nabopoll 1.2 - 'result.php surv' Blind SQL Injection
FlashGameScript 1.5.4 - (index.php func) Remote File Inclusion
FlashGameScript 1.5.4 - 'index.php func' Remote File Inclusion
FCRing 1.31 - (fcring.php s_fuss) Remote File Inclusion
Sinapis 2.2 Gastebuch - (sinagb.php fuss) Remote File Inclusion
Sinapis Forum 2.2 - (sinapis.php fuss) Remote File Inclusion
FCRing 1.31 - 'fcring.php s_fuss' Remote File Inclusion
Sinapis 2.2 Gastebuch - 'sinagb.php fuss' Remote File Inclusion
Sinapis Forum 2.2 - 'sinapis.php fuss' Remote File Inclusion
CS-Gallery 2.0 - (index.php album) Remote File Inclusion
CS-Gallery 2.0 - 'index.php album' Remote File Inclusion
PHP-MIP 0.1 - (top.php laypath) Remote File Inclusion
STWC-Counter 3.4.0 - (downloadcounter.php) Remote File Inclusion
Admin Phorum 3.3.1a - (del.php include_path) Remote File Inclusion
vBulletin 3.6.4 - (inlinemod.php postids) SQL Injection
Angel Lms 7.1 - (default.asp id) SQL Injection
PHP-MIP 0.1 - 'top.php laypath' Remote File Inclusion
STWC-Counter 3.4.0 - 'downloadcounter.php' Remote File Inclusion
Admin Phorum 3.3.1a - 'del.php include_path' Remote File Inclusion
vBulletin 3.6.4 - 'inlinemod.php postids' SQL Injection
Angel Lms 7.1 - 'default.asp id' SQL Injection
News-Letterman 1.1 - (eintrag.php sqllog) Remote File Inclusion
News-Letterman 1.1 - 'eintrag.php sqllog' Remote File Inclusion
AJ Dating 1.0 - (view_profile.php) SQL Injection
AJ Dating 1.0 - 'view_profile.php' SQL Injection
AJ Forum 1.0 - (topic_title.php) SQL Injection
AJ Forum 1.0 - 'topic_title.php' SQL Injection
Flat Chat 2.0 - (include online.txt) Remote Code Execution
netForo! 0.1 - (down.php file_to_download) Remote File Disclosure
Flat Chat 2.0 - 'include online.txt' Remote Code Execution
netForo! 0.1 - 'down.php file_to_download' Remote File Disclosure
Magic CMS 4.2.747 - (mysave.php) Remote File Inclusion
Magic CMS 4.2.747 - 'mysave.php' Remote File Inclusion
HC Newssystem 1.0-1.4 - (index.php ID) SQL Injection
HC Newssystem 1.0-1.4 - 'index.php ID' SQL Injection
Top Auction 1.0 - (viewcat.php) SQL Injection
Top Auction 1.0 - 'viewcat.php' SQL Injection
X-ice News System 1.0 - (devami.asp id) SQL Injection
JGBBS 3.0beta1 - (search.asp author) SQL Injection
X-ice News System 1.0 - 'devami.asp id' SQL Injection
JGBBS 3.0beta1 - 'search.asp author' SQL Injection
Woltlab Burning Board 2.x - (usergroups.php) SQL Injection
Woltlab Burning Board 2.x - 'usergroups.php' SQL Injection
Absolute Image Gallery 2.0 - (gallery.asp categoryId) SQL Injection
Absolute Image Gallery 2.0 - 'gallery.asp categoryId' SQL Injection
Creative Files 1.2 - (kommentare.php) SQL Injection
Particle Blogger 1.2.0 - (post.php postid) SQL Injection
Creative Files 1.2 - 'kommentare.php' SQL Injection
Particle Blogger 1.2.0 - 'post.php postid' SQL Injection
PHP-Stats 0.1.9.1b - (PHP-stats-options.php) Admin 2 exec() eExploit
MPM Chat 2.5 - (view.php logi) Local File Inclusion
PHP-Stats 0.1.9.1b - 'PHP-stats-options.php' Admin 2 exec() eExploit
MPM Chat 2.5 - 'view.php logi' Local File Inclusion
ScriptMagix Jokes 2.0 - (index.php catid) SQL Injection
ScriptMagix Recipes 2.0 - (index.php catid) SQL Injection
ScriptMagix Jokes 2.0 - 'index.php catid' SQL Injection
ScriptMagix Recipes 2.0 - 'index.php catid' SQL Injection
ScriptMagix Lyrics 2.0 - (index.php recid) SQL Injection
ScriptMagix Lyrics 2.0 - 'index.php recid' SQL Injection
PHP-Nuke Module htmltonuke 2.0alpha - (htmltonuke.php) Remote File Inclusion
PHPRaid < 3.0.7 - (rss.php PHPraid_dir) Remote File Inclusion
Monster Top List 1.4.2 - (functions.php root_path) Remote File Inclusion
PHP-Nuke Module htmltonuke 2.0alpha - 'htmltonuke.php' Remote File Inclusion
PHPRaid < 3.0.7 - 'rss.php PHPraid_dir' Remote File Inclusion
Monster Top List 1.4.2 - 'functions.php root_path' Remote File Inclusion
Digital Eye CMS 0.1.1b - (module.php) Remote File Inclusion
Digital Eye CMS 0.1.1b - 'module.php' Remote File Inclusion
ActiveBuyandSell 6.2 - (buyersend.asp catid) SQL Injection
Active Auction Pro 7.1 - (default.asp catid) SQL Injection
ActiveBuyandSell 6.2 - 'buyersend.asp catid' SQL Injection
Active Auction Pro 7.1 - 'default.asp catid' SQL Injection
Net-Side.net CMS - (index.php cms) Remote File Inclusion
Net-Side.net CMS - 'index.php cms' Remote File Inclusion
XOOPS module Articles 1.02 - (print.php id) SQL Injection
XOOPS module Articles 1.02 - 'print.php id' SQL Injection
XOOPS module Articles 1.03 - (index.php cat_id) SQL Injection
XOOPS module Articles 1.03 - 'index.php cat_id' SQL Injection
XOOPS Module Friendfinder 3.3 - (view.php id) SQL Injection
MangoBery CMS 0.5.5 - (quotes.php) Remote File Inclusion
XOOPS Module Friendfinder 3.3 - 'view.php id' SQL Injection
MangoBery CMS 0.5.5 - 'quotes.php' Remote File Inclusion
sBLOG 0.7.3 Beta - (inc/lang.php) Local File Inclusion
sBLOG 0.7.3 Beta - 'inc/lang.php' Local File Inclusion
Picture-Engine 1.2.0 - (wall.php cat) SQL Injection
Picture-Engine 1.2.0 - 'wall.php cat' SQL Injection
JSBoard 2.0.10 - (login.php table) Local File Inclusion
JSBoard 2.0.10 - 'login.php table' Local File Inclusion
XOOPS Module eCal 2.24 - (display.php) SQL Injection
BT-sondage 1.12 - (gestion_sondage.php) Remote File Inclusion
XOOPS Module eCal 2.24 - 'display.php' SQL Injection
BT-sondage 1.12 - 'gestion_sondage.php' Remote File Inclusion
XOOPS Module debaser 0.92 - (genre.php) Blind SQL Injection
XOOPS Module debaser 0.92 - 'genre.php' Blind SQL Injection
XOOPS Module Zmagazine 1.0 - (print.php) SQL Injection
XOOPS Module Zmagazine 1.0 - 'print.php' SQL Injection
XOOPS Module Rha7 Downloads 1.0 - (visit.php) SQL Injection
XOOPS Module Rha7 Downloads 1.0 - 'visit.php' SQL Injection
WebSPELL 4.01.02 - (picture.php) File Disclosure
Beryo 2.0 - (downloadpic.php chemin) Remote File Disclosure
cattaDoc 2.21 - (download2.php fn1) Remote File Disclosure
WebSPELL 4.01.02 - 'picture.php' File Disclosure
Beryo 2.0 - 'downloadpic.php chemin' Remote File Disclosure
cattaDoc 2.21 - 'download2.php fn1' Remote File Disclosure
Scorp Book 1.0 - (smilies.php config) Remote File Inclusion
Scorp Book 1.0 - 'smilies.php config' Remote File Inclusion
WitShare 0.9 - (index.php menu) Local File Inclusion
WitShare 0.9 - 'index.php menu' Local File Inclusion
Pathos CMS 0.92-2 - (warn.php) Remote File Inclusion
Pathos CMS 0.92-2 - 'warn.php' Remote File Inclusion
PHPGalleryScript 1.0 - (init.gallery.php include_class) Remote File Inclusion
PHPGalleryScript 1.0 - 'init.gallery.php include_class' Remote File Inclusion
Expow 0.8 - (autoindex.php cfg_file) Remote File Inclusion
Request It 1.0b - (index.php id) Remote File Inclusion
Chatness 2.5.3 - (options.php/save.php) Remote Code Execution
Expow 0.8 - 'autoindex.php cfg_file' Remote File Inclusion
Request It 1.0b - 'index.php id' Remote File Inclusion
Chatness 2.5.3 - 'options.php/save.php' Remote Code Execution
Pixaria Gallery 1.x - (class.Smarty.php) Remote File Inclusion
Pixaria Gallery 1.x - 'class.Smarty.php' Remote File Inclusion
CNStats 2.9 - (who_r.php bj) Remote File Inclusion
NMDeluxe 1.0.1 - (footer.php template) Local File Inclusion
CNStats 2.9 - 'who_r.php bj' Remote File Inclusion
NMDeluxe 1.0.1 - 'footer.php template' Local File Inclusion
openMairie 1.10 - (scr/soustab.php) Local File Inclusion
openMairie 1.10 - 'scr/soustab.php' Local File Inclusion
Anthologia 0.5.2 - (index.php ads_file) Remote File Inclusion
Anthologia 0.5.2 - 'index.php ads_file' Remote File Inclusion
Joomla! Component JoomlaPack 1.0.4a2 RE - (CAltInstaller.php) Remote File Inclusion
Joomla! Component JoomlaPack 1.0.4a2 RE - 'CAltInstaller.php' Remote File Inclusion
ShoutPro 1.5.2 - (shout.php) Remote Code Injection
ShoutPro 1.5.2 - 'shout.php' Remote Code Injection
AimStats 3.2 - (process.php update) Remote Code Execution
AimStats 3.2 - 'process.php update' Remote Code Execution
CreaDirectory 1.2 - (error.asp id) SQL Injection
CreaDirectory 1.2 - 'error.asp id' SQL Injection
JChit counter 1.0.0 - (imgsrv.php ac) Remote File Disclosure
JChit counter 1.0.0 - 'imgsrv.php ac' Remote File Disclosure
Joomla! 1.5.0 Beta - (pcltar.php) Remote File Inclusion
Pagode 0.5.8 - (navigator_ok.php asolute) Remote File Disclosure
Joomla! 1.5.0 Beta - 'pcltar.php' Remote File Inclusion
Pagode 0.5.8 - 'navigator_ok.php asolute' Remote File Disclosure
wavewoo 0.1.1 - (loading.php path_include) Remote File Inclusion
JulmaCMS 1.4 - (file.php) Remote File Disclosure
Ext 1.0 - (feed-proxy.php feed) Remote File Disclosure
PHPBandManager 0.8 - (index.php pg) Remote File Inclusion
PHPOracleView - (include_all.inc.php page_dir) Remote File Inclusion
wavewoo 0.1.1 - 'loading.php path_include' Remote File Inclusion
JulmaCMS 1.4 - 'file.php' Remote File Disclosure
Ext 1.0 - 'feed-proxy.php feed' Remote File Disclosure
PHPBandManager 0.8 - 'index.php pg' Remote File Inclusion
PHPOracleView - 'include_all.inc.php page_dir' Remote File Inclusion
EsForum 3.0 - (forum.php idsalon) SQL Injection
EsForum 3.0 - 'forum.php idsalon' SQL Injection
Imageview 5.3 - (fileview.php album) Local File Inclusion
The Merchant 2.2.0 - (index.php show) Remote File Inclusion
psipuss 1.0 - (editusers.php) Remote Change Admin Password
Imageview 5.3 - 'fileview.php album' Local File Inclusion
The Merchant 2.2.0 - 'index.php show' Remote File Inclusion
psipuss 1.0 - 'editusers.php' Remote Change Admin Password
Sendcard 3.4.1 - (sendcard.php form) Local File Inclusion
Sendcard 3.4.1 - 'sendcard.php form' Local File Inclusion
PStruh-CZ 1.3/1.5 - (download.asp) File Disclosure
PStruh-CZ 1.3/1.5 - 'download.asp' File Disclosure
Open Translation Engine (OTE) 0.7.8 - (header.php ote_home) Remote File Inclusion
Open Translation Engine (OTE) 0.7.8 - 'header.php ote_home' Remote File Inclusion
Censura 1.15.04 - (censura.php vendorid) SQL Injection
E-GADS! 2.2.6 - (common.php locale) Remote File Inclusion
Versado CMS 1.07 - (ajax_listado.php urlModulo) Remote File Inclusion
workbench 0.11 - (header.php path) Remote File Inclusion
Censura 1.15.04 - 'censura.php vendorid' SQL Injection
E-GADS! 2.2.6 - 'common.php locale' Remote File Inclusion
Versado CMS 1.07 - 'ajax_listado.php urlModulo' Remote File Inclusion
workbench 0.11 - 'header.php path' Remote File Inclusion
PHPtree 1.3 - (cms2.php s_dir) Remote File Inclusion
NoAh 0.9 pre 1.2 - (mfa_theme.php) Remote File Inclusion
PHPtree 1.3 - 'cms2.php s_dir' Remote File Inclusion
NoAh 0.9 pre 1.2 - 'mfa_theme.php' Remote File Inclusion
ACGVAnnu 1.3 - (acgv.php rubrik) Local File Inclusion
ACGVAnnu 1.3 - 'acgv.php rubrik' Local File Inclusion
LaVague 0.3 - (printbar.php views_path) Remote File Inclusion
LaVague 0.3 - 'printbar.php views_path' Remote File Inclusion
Miplex2 - (SmartyFU.class.php) Remote File Inclusion
Miplex2 - 'SmartyFU.class.php' Remote File Inclusion
SimpleNews 1.0.0 FINAL - (print.php news_id) SQL Injection
TutorialCMS 1.00 - (search.php search) SQL Injection
SimpleNews 1.0.0 FINAL - 'print.php news_id' SQL Injection
TutorialCMS 1.00 - 'search.php search' SQL Injection
maGAZIn 2.0 - (PHPThumb.php src) Remote File Disclosure
R2K Gallery 1.7 - (galeria.php lang2) Local File Inclusion
maGAZIn 2.0 - 'PHPThumb.php src' Remote File Disclosure
R2K Gallery 1.7 - 'galeria.php lang2' Local File Inclusion
PHP FirstPost 0.1 - (block.php Include) Remote File Inclusion
iG Shop 1.4 - (page.php) SQL Injection
PHP FirstPost 0.1 - 'block.php Include' Remote File Inclusion
iG Shop 1.4 - 'page.php' SQL Injection
Beacon 0.2.0 - (splash.lang.php) Remote File Inclusion
Beacon 0.2.0 - 'splash.lang.php' Remote File Inclusion
BlogMe 3.0 - (archshow.asp var) SQL Injection
BlogMe 3.0 - 'archshow.asp var' SQL Injection
NagiosQL 2005 2.00 - (prepend_adm.php) Remote File Inclusion
Feindt Computerservice News 2.0 - (newsadmin.php action) Remote File Inclusion
NagiosQL 2005 2.00 - 'prepend_adm.php' Remote File Inclusion
Feindt Computerservice News 2.0 - 'newsadmin.php action' Remote File Inclusion
FAQEngine 4.16.03 - (question.php questionref) SQL Injection
FAQEngine 4.16.03 - 'question.php questionref' SQL Injection
Libstats 1.0.3 - (template_csv.php) Remote File Inclusion
MolyX BOARD 2.5.0 - (index.php lang) Local File Inclusion
Libstats 1.0.3 - 'template_csv.php' Remote File Inclusion
MolyX BOARD 2.5.0 - 'index.php lang' Local File Inclusion
Dokeos 1.8.0 - (my_progress.php course) SQL Injection
Dokeos 1.6.5 - (courseLog.php scormcontopen) SQL Injection
Dokeos 1.8.0 - 'my_progress.php course' SQL Injection
Dokeos 1.6.5 - 'courseLog.php scormcontopen' SQL Injection
Webavis 0.1.1 - (class.php root) Remote File Inclusion
Webavis 0.1.1 - 'class.php root' Remote File Inclusion
My Little Forum 1.7 - (user.php id) SQL Injection
My Little Forum 1.7 - 'user.php id' SQL Injection
TROforum 0.1 - (admin.php site_url) Remote File Inclusion
TROforum 0.1 - 'admin.php site_url' Remote File Inclusion
Fundanemt 2.2.0 - (spellcheck.php) Remote Code Execution
Fundanemt 2.2.0 - 'spellcheck.php' Remote Code Execution
Madirish Webmail 2.0 - (addressbook.php) Remote File Inclusion
Madirish Webmail 2.0 - 'addressbook.php' Remote File Inclusion
Fuzzylime Forum 1.0 - (low.php topic) SQL Injection
Fuzzylime Forum 1.0 - 'low.php topic' SQL Injection
Sitellite CMS 4.2.12 - (559668.php) Remote File Inclusion
PHP::HTML 0.6.4 - (PHPhtml.php) Remote File Inclusion
PHPMyInventory 2.8 - (global.inc.php) Remote File Inclusion
Sitellite CMS 4.2.12 - '559668.php' Remote File Inclusion
PHP::HTML 0.6.4 - 'PHPhtml.php' Remote File Inclusion
PHPMyInventory 2.8 - 'global.inc.php' Remote File Inclusion
MiniBill 1.2.5 - (run_billing.php) Remote File Inclusion
MiniBill 1.2.5 - 'run_billing.php' Remote File Inclusion
LiveCMS 3.4 - (categoria.php cid) SQL Injection
LiveCMS 3.4 - 'categoria.php cid' SQL Injection
SerWeb 0.9.4 - (load_lang.php) Remote File Inclusion
Powl 0.94 - (htmledit.php) Remote File Inclusion
SerWeb 0.9.4 - 'load_lang.php' Remote File Inclusion
Powl 0.94 - 'htmledit.php' Remote File Inclusion
Pharmacy System 2.0 - (index.php ID) SQL Injection
Pharmacy System 2.0 - 'index.php ID' SQL Injection
b1gbb 2.24.0 - (footer.inc.php tfooter) Remote File Inclusion
b1gbb 2.24.0 - 'footer.inc.php tfooter' Remote File Inclusion
SiteDepth CMS 3.44 - (ShowImage.php name) File Disclosure
DreamLog 0.5 - (upload.php) Arbitrary File Upload
SiteDepth CMS 3.44 - 'ShowImage.php name' File Disclosure
DreamLog 0.5 - 'upload.php' Arbitrary File Upload
PHPSiteBackup 0.1 - (pcltar.lib.php) Remote File Inclusion
EVA-Web 1.1 <= 2.2 - (index.php3) Remote File Inclusion
PHPSiteBackup 0.1 - 'pcltar.lib.php' Remote File Inclusion
EVA-Web 1.1 <= 2.2 - 'index.php3' Remote File Inclusion
WebChat 0.78 - (login.php rid) SQL Injection
Buddy Zone 1.5 - (view_sub_cat.php cat_id) SQL Injection
WebChat 0.78 - 'login.php rid' SQL Injection
Buddy Zone 1.5 - 'view_sub_cat.php cat_id' SQL Injection
TotalCalendar 2.402 - (view_event.php) SQL Injection
XCMS 1.1 - (Galerie.php) Local File Inclusion
TotalCalendar 2.402 - 'view_event.php' SQL Injection
XCMS 1.1 - 'Galerie.php' Local File Inclusion
phpEventCalendar 0.2.3 - (eventdisplay.php) SQL Injection
phpEventCalendar 0.2.3 - 'eventdisplay.php' SQL Injection
AV Arcade 2.1b - (index.php id) SQL Injection
PHPDirector 0.21 - (videos.php id) SQL Injection
vbzoom 1.x - (forum.php MainID) SQL Injection
AV Arcade 2.1b - 'index.php id' SQL Injection
PHPDirector 0.21 - 'videos.php id' SQL Injection
vbzoom 1.x - 'forum.php MainID' SQL Injection
Girlserv ads 1.5 - (details_news.php) SQL Injection
Girlserv ads 1.5 - 'details_news.php' SQL Injection
AsteriDex 3.0 - (callboth.php) Remote Code Execution
AsteriDex 3.0 - 'callboth.php' Remote Code Execution
vBulletin Mod RPG Inferno 2.4 - (inferno.php) SQL Injection
OpenLD 1.2.2 - (index.php id) SQL Injection
FlashBB 1.1.8 - (sendmsg.php) Remote File Inclusion
vBulletin Mod RPG Inferno 2.4 - 'inferno.php' SQL Injection
OpenLD 1.2.2 - 'index.php id' SQL Injection
FlashBB 1.1.8 - 'sendmsg.php' Remote File Inclusion
PsNews 1.1 - (show.php newspath) Local File Inclusion
PsNews 1.1 - 'show.php newspath' Local File Inclusion
QuickEStore 8.2 - (insertorder.cfm) SQL Injection
QuickEStore 8.2 - 'insertorder.cfm' SQL Injection
phpBB Module SupaNav 1.0.0 - (link_main.php) Remote File Inclusion
phpBB Module SupaNav 1.0.0 - 'link_main.php' Remote File Inclusion
Blog System 1.x - (index.php news_id) SQL Injection
Blog System 1.x - 'index.php news_id' SQL Injection
Confixx Pro 3.3.1 - (saveserver.php) Remote File Inclusion
Confixx Pro 3.3.1 - 'saveserver.php' Remote File Inclusion
SimpleBlog 3.0 - (comments_get.asp id) SQL Injection
SimpleBlog 3.0 - 'comments_get.asp id' SQL Injection
paBugs 2.0 Beta 3 - (main.php cid) SQL Injection
paBugs 2.0 Beta 3 - 'main.php cid' SQL Injection
YNP Portal System 2.2.0 - (showpage.cgi p) Remote File Disclosure
YNP Portal System 2.2.0 - 'showpage.cgi p' Remote File Disclosure
FishCart 3.2 RC2 - (fc_example.php) Remote File Inclusion
Ncaster 1.7.2 - (archive.php) Remote File Inclusion
FishCart 3.2 RC2 - 'fc_example.php' Remote File Inclusion
Ncaster 1.7.2 - 'archive.php' Remote File Inclusion
Pixlie 1.7 - (pixlie.php root) Remote File Disclosure
Pixlie 1.7 - 'pixlie.php root' Remote File Disclosure
Squirrelcart 1.x.x - (cart.php) Remote File Inclusion
Squirrelcart 1.x.x - 'cart.php' Remote File Inclusion
SomeryC 0.2.4 - (include.php skindir) Remote File Inclusion
SomeryC 0.2.4 - 'include.php skindir' Remote File Inclusion
Micro CMS 3.5 - (revert-content.php) SQL Injection
Micro CMS 3.5 - 'revert-content.php' SQL Injection
DL PayCart 1.01 - (viewitem.php ItemID) Blind SQL Injection
VWar 1.5.0 R15 - (mvcw.php) Remote File Inclusion
DL PayCart 1.01 - 'viewitem.php ItemID' Blind SQL Injection
VWar 1.5.0 R15 - 'mvcw.php' Remote File Inclusion
xGB 2.0 - (xGB.php) Remote Security Bypass
xGB 2.0 - 'xGB.php' Remote Security Bypass
PHPNS 1.1 - (shownews.php id) SQL Injection
PHPNS 1.1 - 'shownews.php id' SQL Injection
Ourspace 2.0.9 - (uploadmedia.cgi) Arbitrary File Upload
Ourspace 2.0.9 - 'uploadmedia.cgi' Arbitrary File Upload
Yvora CMS 1.0 - (error_view.php ID) SQL Injection
Yvora CMS 1.0 - 'error_view.php ID' SQL Injection
PHPOF 20040226 - (DB_adodb.class.php) Remote File Inclusion
AnyInventory 2.0 - (Environment.php) Remote File Inclusion
PHPOF 20040226 - 'DB_adodb.class.php' Remote File Inclusion
AnyInventory 2.0 - 'Environment.php' Remote File Inclusion
Webace-Linkscript 1.3 SE - (start.php) SQL Injection
RW::Download 2.0.3 lite - (index.php dlid) SQL Injection
Webace-Linkscript 1.3 SE - 'start.php' SQL Injection
RW::Download 2.0.3 lite - 'index.php dlid' SQL Injection
Sisfo Kampus 2006 - (blanko.preview.php) Local File Disclosure
Sisfo Kampus 2006 - 'blanko.preview.php' Local File Disclosure
PHPress 0.2.0 - (adisplay.php lang) Local File Inclusion
PHPress 0.2.0 - 'adisplay.php lang' Local File Inclusion
Ajax File Browser 3b - (settings.inc.php approot) Remote File Inclusion
Ajax File Browser 3b - 'settings.inc.php approot' Remote File Inclusion
JBlog 1.0 - (index.php id) SQL Injection
JBlog 1.0 - 'index.php id' SQL Injection
neuron news 1.0 - (index.php q) Local File Inclusion
neuron news 1.0 - 'index.php q' Local File Inclusion
Wordsmith 1.1b - (config.inc.php _path) Remote File Inclusion
Wordsmith 1.1b - 'config.inc.php _path' Remote File Inclusion
helplink 0.1.0 - (show.php) Remote File Inclusion
helplink 0.1.0 - 'show.php' Remote File Inclusion
Novus 1.0 - (notas.asp nota_id) SQL Injection
Novus 1.0 - 'notas.asp nota_id' SQL Injection
lustig.cms Beta 2.5 - (forum.php view) Remote File Inclusion
lustig.cms Beta 2.5 - 'forum.php view' Remote File Inclusion
Ossigeno CMS 2.2a3 - (footer.php) Remote File Inclusion
Ossigeno CMS 2.2a3 - 'footer.php' Remote File Inclusion
Picturesolution 2.1 - (config.php path) Remote File Inclusion
Picturesolution 2.1 - 'config.php path' Remote File Inclusion
xKiosk 3.0.1i - (xkurl.php PEARPATH) Remote File Inclusion
xKiosk 3.0.1i - 'xkurl.php PEARPATH' Remote File Inclusion
LimeSurvey 1.52 - (language.php) Remote File Inclusion
LimeSurvey 1.52 - 'language.php' Remote File Inclusion
emagiC CMS.Net 4.0 - (emc.asp) SQL Injection
FireConfig 0.5 - (dl.php) Remote File Disclosure
emagiC CMS.Net 4.0 - 'emc.asp' SQL Injection
FireConfig 0.5 - 'dl.php' Remote File Disclosure
Ax Developer CMS 0.1.1 - (index.php module) Local File Inclusion
GuppY 4.6.3 - (includes.inc selskin) Remote File Inclusion
Quick and Dirty Blog (qdblog) 0.4 - (categories.php) Local File Inclusion
scWiki 1.0 Beta 2 - (common.php pathdot) Remote File Inclusion
Ax Developer CMS 0.1.1 - 'index.php module' Local File Inclusion
GuppY 4.6.3 - 'includes.inc selskin' Remote File Inclusion
Quick and Dirty Blog (qdblog) 0.4 - 'categories.php' Local File Inclusion
scWiki 1.0 Beta 2 - 'common.php pathdot' Remote File Inclusion
Content Injector 1.52 - (index.php cat) SQL Injection
Content Injector 1.52 - 'index.php cat' SQL Injection
Amber Script 1.0 - (show_content.php id) Local File Inclusion
Amber Script 1.0 - 'show_content.php id' Local File Inclusion
project alumni 1.0.9 - (index.php act) Local File Inclusion
project alumni 1.0.9 - 'index.php act' Local File Inclusion
Web-MeetMe 3.0.3 - (play.php) Remote File Disclosure
Web-MeetMe 3.0.3 - 'play.php' Remote File Disclosure
KML share 1.1 - (region.php layer) Remote File Disclosure
KML share 1.1 - 'region.php layer' Remote File Disclosure
EZContents 1.4.5 - (index.php link) Remote File Disclosure
EZContents 1.4.5 - 'index.php link' Remote File Disclosure
PolDoc CMS 0.96 - (download_file.php) File Disclosure
PolDoc CMS 0.96 - 'download_file.php' File Disclosure
xml2owl 0.1.1 - (filedownload.php) Remote File Disclosure
xml2owl 0.1.1 - 'filedownload.php' Remote File Disclosure
Wallpaper Site 1.0.09 - (category.php) SQL Injection
Wallpaper Site 1.0.09 - 'category.php' SQL Injection
PHP ZLink 0.3 - (go.php) SQL Injection
PHP ZLink 0.3 - 'go.php' SQL Injection
ThemeSiteScript 1.0 - (index.php loadadminpage) Remote File Inclusion
ThemeSiteScript 1.0 - 'index.php loadadminpage' Remote File Inclusion
ZenPhoto 1.1.3 - (rss.php albumnr) SQL Injection
ZenPhoto 1.1.3 - 'rss.php albumnr' SQL Injection
Docebo 3.5.0.3 - (lib.regset.php) Command Execution
Docebo 3.5.0.3 - 'lib.regset.php' Command Execution
Docebo 3.5.0.3 - (lib.regset.php/non-blind) SQL Injection
Docebo 3.5.0.3 - 'lib.regset.php/non-blind' SQL Injection
Quinsonnas Mail Checker 1.55 - (footer.php) Remote File Inclusion
Quinsonnas Mail Checker 1.55 - 'footer.php' Remote File Inclusion
PHPMesFilms 1.0 - (index.php id) SQL Injection
PHPMesFilms 1.0 - 'index.php id' SQL Injection
CuteNews 1.4.6 - (ip ban) Cross-Site Scripting / Command Execution (Administrator Required)
CuteNews 1.4.6 - 'ip ban' Authorized Cross-Site Scripting / Command Execution
GNUBoard 4.31.03 - (08.12.29) Local File Inclusion
GNUBoard 4.31.03 (08.12.29) - Local File Inclusion
Gazelle CMS - 'template' Local File Inclusion
Gazelle CMS 1.0 - 'template' Local File Inclusion
Social Engine - (category_id) SQL Injection
SmartSiteCMS 1.0 - (articles.php var) Blind SQL Injection
Social Engine 3.06 - 'category_id' Parameter SQL Injection
SmartSiteCMS 1.0 - Blind SQL Injection
Star Articles 6.0 - (admin.manage) Remote Contents Change
Star Articles 6.0 - Remote Contents Change
PLE CMS 1.0 Beta 4.2 - (login.php school) Blind SQL Injection
PLE CMS 1.0 Beta 4.2 - Blind SQL Injection
GNUBoard 4.31.04 - (09.01.30) Multiple Local+Remote Vulnerabilities
GNUBoard 4.31.04 (09.01.30) - Multiple Local+Remote Vulnerabilities
eVision CMS 2.0 - (field) SQL Injection
eVision CMS 2.0 - SQL Injection
phpBLASTER 1.0 RC1 - (blaster_user) Blind SQL Injection
phpBLASTER 1.0 RC1 - Blind SQL Injection
phpslash 0.8.1.1 - Remote Code Execution
PHPSlash 0.8.1.1 - Remote Code Execution
WEBalbum 2.4b - (photo.php id) Blind SQL Injection
WEBalbum 2.4b - 'photo.php id' Blind SQL Injection
PHPbbBook 1.3 - (bbcode.php l) Local File Inclusion
PHPbbBook 1.3 - 'bbcode.php l' Local File Inclusion
IF-CMS 2.0 - (frame.php id) Blind SQL Injection
IF-CMS 2.0 - 'frame.php id' Blind SQL Injection
ZeroBoardXE 1.1.5 - (09.01.22) Cross-Site Scripting
ZeroBoardXE 1.1.5 (09.01.22) - Cross-Site Scripting
Gaeste 1.6 - (gastbuch.php) Remote File Disclosure
Gaeste 1.6 - 'gastbuch.php' Remote File Disclosure
Bloggeruniverse 2.0 Beta - (editcomments.php id) SQL Injection
Den Dating 9.01 - (searchmatch.php) SQL Injection
Bloggeruniverse 2.0 Beta - 'editcomments.php id' SQL Injection
Den Dating 9.01 - 'searchmatch.php' SQL Injection
PHP Krazy Image Host Script 1.01 - (viewer.php id) SQL Injection
PHP Krazy Image Host Script 1.01 - 'viewer.php id' SQL Injection
phpBB 3 - (autopost bot mod 0.1.3) Remote File Inclusion
i-dreams Mailer 1.2 Final - (admin.dat) File Disclosure
i-dreams GB 5.4 Final - (admin.dat) File Disclosure
phpBB 3 - 'autopost bot mod 0.1.3' Remote File Inclusion
i-dreams Mailer 1.2 Final - 'admin.dat' File Disclosure
i-dreams GB 5.4 Final - 'admin.dat' File Disclosure
Osmodia Bulletin Board 1.x - (admin.txt) File Disclosure
Osmodia Bulletin Board 1.x - 'admin.txt' File Disclosure
Supernews 1.5 - (valor.php noticia) SQL Injection
X-BLC 0.2.0 - (get_read.php section) SQL Injection
Supernews 1.5 - 'valor.php noticia' SQL Injection
X-BLC 0.2.0 - 'get_read.php section' SQL Injection
SurfMyTV Script 1.0 - (view.php id) SQL Injection
SurfMyTV Script 1.0 - 'view.php id' SQL Injection
WeBid 0.7.3 RC9 - (upldgallery.php) Arbitrary File Upload
WeBid 0.7.3 RC9 - 'upldgallery.php' Arbitrary File Upload
vsp stats processor 0.45 - (gamestat.php gameID) SQL Injection
vsp stats processor 0.45 - 'gamestat.php gameID' SQL Injection
Back-End CMS 5.0 - (main.asp id) SQL Injection
Back-End CMS 5.0 - 'main.asp id' SQL Injection
GuestCal 2.1 - (index.php lang) Local File Inclusion
GuestCal 2.1 - 'index.php lang' Local File Inclusion
W2B Restaurant 1.2 - (conf.inc) Config File Disclosure
W2B Restaurant 1.2 - 'conf.inc' Config File Disclosure
NetHoteles 3.0 - (ficha.php) SQL Injection
eLitius 1.0 - (manage-admin.php) Add Admin/Change Password Exploit
NetHoteles 3.0 - 'ficha.php' SQL Injection
eLitius 1.0 - 'manage-admin.php' Add Admin/Change Password Exploit
Dokeos Lms 1.8.5 - (whoisonline.php) PHP Code Injection
Dokeos Lms 1.8.5 - 'whoisonline.php' PHP Code Injection
Flatchat 3.0 - (pmscript.php with) Local File Inclusion
Flatchat 3.0 - 'pmscript.php with' Local File Inclusion
VisionLms 1.0 - (changePW.php) Remote Password Change Exploit
VisionLms 1.0 - 'changePW.php' Remote Password Change Exploit
eLitius 1.0 - (banner-details.php id) SQL Injection
ProjectCMS 1.0b - (index.php sn) SQL Injection
eLitius 1.0 - 'banner-details.php id' SQL Injection
ProjectCMS 1.0b - 'index.php sn' SQL Injection
pecio CMS 1.1.5 - (index.php language) Local File Inclusion
pecio CMS 1.1.5 - 'index.php language' Local File Inclusion
Uguestbook 1.0b - (Guestbook.mdb) Arbitrary Database Disclosure
Uguestbook 1.0b - 'Guestbook.mdb' Arbitrary Database Disclosure
beLive 0.2.3 - (arch.php arch) Local File Inclusion
beLive 0.2.3 - 'arch.php arch' Local File Inclusion
PHPenpals 1.1 - (mail.php ID) SQL Injection
PHPenpals 1.1 - 'mail.php ID' SQL Injection
MaxCMS 2.0 - (inc/ajax.asp) SQL Injection
MaxCMS 2.0 - 'inc/ajax.asp' SQL Injection
Realty Web-Base 1.0 - (list_list.php id) SQL Injection
Realty Web-Base 1.0 - 'list_list.php id' SQL Injection
vBulletin vbBux/vbPlaza 2.x - (vbplaza.php) Blind SQL Injection
vBulletin vbBux/vbPlaza 2.x - 'vbplaza.php' Blind SQL Injection
ShaadiClone 2.0 - (addAdminmembercode.php) Add Admin
ShaadiClone 2.0 - 'addAdminmembercode.php' Add Admin
ecsportal rel 6.5 - (article_view_photo.php id) SQL Injection
ecsportal rel 6.5 - 'article_view_photo.php id' SQL Injection
Supernews 2.6 - (index.php noticia) SQL Injection
Supernews 2.6 - 'index.php noticia' SQL Injection
Movie PHP Script 2.0 - (init.php anticode) Code Execution
Movie PHP Script 2.0 - 'init.php anticode' Code Execution
VT-Auth 1.0 - (zHk8dEes3.txt) File Disclosure
VT-Auth 1.0 - 'zHk8dEes3.txt' File Disclosure
PHPWebThings 1.5.2 - (help.php module) Local File Inclusion
PHPWebThings 1.5.2 - 'help.php module' Local File Inclusion
DB Top Sites 1.0 - (index.php u) Local File Inclusion
DB Top Sites 1.0 - 'index.php u' Local File Inclusion
PHPCollegeExchange 0.1.5c - (listing_view.php itemnr) SQL Injection
PHPCollegeExchange 0.1.5c - 'listing_view.php itemnr' SQL Injection
XOOPS 2.3.3 - (.htaccess) Remote File Disclosure
PHPFK 7.03 - (page_bottom.php) Local File Inclusion
XOOPS 2.3.3 - '.htaccess' Remote File Disclosure
PHPFK 7.03 - 'page_bottom.php' Local File Inclusion
Glossword 1.8.11 - (index.php x) Local File Inclusion
Glossword 1.8.11 - 'index.php x' Local File Inclusion
LightOpenCMS 0.1 - (smarty.php cwd) Local File Inclusion
LightOpenCMS 0.1 - 'smarty.php cwd' Local File Inclusion
Messages Library 2.0 - (cat.php CatID) SQL Injection
Messages Library 2.0 - 'cat.php CatID' SQL Injection
PHP-Sugar 0.80 - (index.php t) Local File Inclusion
PHP-Sugar 0.80 - 'index.php t' Local File Inclusion
Universe CMS 1.0.6 - (vnews.php id) SQL Injection
Universe CMS 1.0.6 - 'vnews.php id' SQL Injection
Phenotype CMS 2.8 - (login.php user) Blind SQL Injection
Phenotype CMS 2.8 - 'login.php user' Blind SQL Injection
webLeague 2.2.0 - (install.php) Remote Change Password Exploit
webLeague 2.2.0 - 'install.php' Remote Change Password Exploit
VS PANEL 7.5.5 - (results.php Cat_ID) SQL Injection
VS PANEL 7.5.5 - 'results.php Cat_ID' SQL Injection
WebVision 2.1 - (news.php n) SQL Injection
WebVision 2.1 - 'news.php n' SQL Injection
Silentum Guestbook 2.0.2 - (silentum_Guestbook.php) SQL Injection
Silentum Guestbook 2.0.2 - 'silentum_Guestbook.php' SQL Injection
Basilic 1.5.13 - (index.php idAuthor) SQL Injection
Basilic 1.5.13 - 'index.php idAuthor' SQL Injection
ProjectButler 1.5.0 - (pda_projects.php offset) Remote File Inclusion
ProjectButler 1.5.0 - 'pda_projects.php offset' Remote File Inclusion
Netpet CMS 1.9 - (confirm.php language) Local File Inclusion
Netpet CMS 1.9 - 'confirm.php language' Local File Inclusion
simplePHPWeb 0.2 - (files.php) Authentication Bypass
simplePHPWeb 0.2 - 'files.php' Authentication Bypass
Discloser 0.0.4-rc2 - (index.php more) SQL Injection
Discloser 0.0.4-rc2 - 'index.php more' SQL Injection
elgg 1.5 - (/_css/js.php) Local File Inclusion
elgg 1.5 - '/_css/js.php' Local File Inclusion
In-portal 4.3.1 - (index.php env) Local File Inclusion
In-portal 4.3.1 - 'index.php env' Local File Inclusion
E CMS 1.0 - (index.php s) SQL Injection
E CMS 1.0 - 'index.php s' SQL Injection
New5starRating 1.0 - (rating.php) SQL Injection
New5starRating 1.0 - 'rating.php' SQL Injection
Moa Gallery 1.2.0 - (index.php action) SQL Injection
Moa Gallery 1.2.0 - 'index.php action' SQL Injection
PAD Site Scripts 3.6 - (list.php string) SQL Injection
PAD Site Scripts 3.6 - 'list.php string' SQL Injection
PHPSANE 0.5.0 - (save.php) Remote File Inclusion
PHPSANE 0.5.0 - 'save.php' Remote File Inclusion
Modern Script 5.0 - (index.php s) SQL Injection
Re-Script 0.99 Beta - (listings.php op) SQL Injection
Modern Script 5.0 - 'index.php s' SQL Injection
Re-Script 0.99 Beta - 'listings.php op' SQL Injection
KingCMS 0.6.0 - (menu.php) Remote File Inclusion
KingCMS 0.6.0 - 'menu.php' Remote File Inclusion
Ve-EDIT 0.1.4 - (debug_PHP.php) Local File Inclusion
Ve-EDIT 0.1.4 - 'debug_PHP.php' Local File Inclusion
OBOphiX 2.7.0 - (fonctions_racine.php) Remote File Inclusion
OBOphiX 2.7.0 - 'fonctions_racine.php' Remote File Inclusion
PHPNagios 1.2.0 - (menu.php) Local File Inclusion
PHPNagios 1.2.0 - 'menu.php' Local File Inclusion
An image Gallery 1.0 - (navigation.php) Local Directory Traversal
An image Gallery 1.0 - 'navigation.php' Local Directory Traversal
Image voting 1.0 - (index.php show) SQL Injection
Image voting 1.0 - 'index.php show' SQL Injection
Aurora CMS 1.0.2 - (install.plugin.php) Remote File Inclusion
Aurora CMS 1.0.2 - 'install.plugin.php' Remote File Inclusion
efront 3.5.4 - (database.php path) Remote File Inclusion
efront 3.5.4 - 'database.php path' Remote File Inclusion
OpenSiteAdmin 0.9.7b - (pageHeader.php path) Remote File Inclusion
OpenSiteAdmin 0.9.7b - 'pageHeader.php path' Remote File Inclusion
ActiveBuyandSell 6.2 - (buyersend.asp catid) Blind SQL Injection
ActiveBuyandSell 6.2 - 'buyersend.asp catid' Blind SQL Injection
V.H.S. Booking - (hotel_habitaciones.php HotelID) SQL Injection
V.H.S. Booking - 'hotel_habitaciones.php HotelID' SQL Injection
Datenator 0.3.0 - (event.php id) SQL Injection
Datenator 0.3.0 - 'event.php id' SQL Injection
XlentCMS 1.0.4 - (downloads.php?cat) SQL Injection
XlentCMS 1.0.4 - 'downloads.php?cat' SQL Injection
Rezervi 3.0.2 - (mail.inc.php) Remote File Inclusion
Rezervi 3.0.2 - 'mail.inc.php' Remote File Inclusion
LightOpenCMS 0.1 - (smarty.php) Remote File Inclusion
LightOpenCMS 0.1 - 'smarty.php' Remote File Inclusion
ULoki Community Forum 2.1 - (usercp.php) Cross-Site Scripting
ULoki Community Forum 2.1 - 'usercp.php' Cross-Site Scripting
PHPCOIN 1.2.1 - (mod.php) SQL Injection
PHPCOIN 1.2.1 - 'mod.php' SQL Injection
PHPCOIN 1.2.1 - (mod.php) Local File Inclusion
PHPCOIN 1.2.1 - 'mod.php' Local File Inclusion
Anantasoft Gazelle CMS - Cross-Site Request Forgery
Gazelle CMS - Cross-Site Request Forgery
SiteX CMS 0.7.4 Beta - (/photo.php) SQL Injection
SiteX CMS 0.7.4 Beta - '/photo.php' SQL Injection
FCKEditor Core - (FileManager test.html) Arbitrary File Upload (1)
FCKEditor Core - 'FileManager test.html' Arbitrary File Upload (1)
WHMCS control (WHMCompleteSolution) - SQL Injection
WHMCompleteSolution (WHMCS) control (WHMCompleteSolution) - SQL Injection
WHMCS Control 2 - 'announcements.php' SQL Injection
WHMCompleteSolution (WHMCS) Control 2 - 'announcements.php' SQL Injection
tekno.Portal 0.1b - (makale.php id) SQL Injection
tekno.Portal 0.1b - 'makale.php id' SQL Injection
Heaven Soft CMS 4.7 - (photogallery_open.php) SQL Injection
Heaven Soft CMS 4.7 - 'photogallery_open.php' SQL Injection
Multi Vendor Mall - (itemdetail.php & shop.php) SQL Injection
Multi Vendor Mall - 'itemdetail.php & shop.php' SQL Injection
PPhlogger 2.2.5 - (trace.php) Remote Command Execution
PPhlogger 2.2.5 - 'trace.php' Remote Command Execution
Eyeland Studio Inc. - (game.php) SQL Injection
Eyeland Studio Inc. - 'game.php' SQL Injection
PHPDirector 0.30 - (videos.php) SQL Injection
PHPDirector 0.30 - 'videos.php' SQL Injection
PHPaaCMS 0.3.1 - (show.php?id=) SQL Injection
PHPaaCMS 0.3.1 - 'show.php?id=' SQL Injection
BS Business Directory - (articlesdetails.php) SQL Injection (PoC)
BS Classifieds Ads - (articlesdetails.php) SQL Injection (PoC)
BS Events Directory - (articlesdetails.php) SQL Injection (PoC)
BS Business Directory - 'articlesdetails.php' SQL Injection (PoC)
BS Classifieds Ads - 'articlesdetails.php' SQL Injection (PoC)
BS Events Directory - 'articlesdetails.php' SQL Injection (PoC)
Mayasan Portal 2.0 - (makaledetay.asp) SQL Injection
Mayasan Portal 2.0 - (haberdetay.asp) SQL Injection
Mayasan Portal 2.0 - 'makaledetay.asp' SQL Injection
Mayasan Portal 2.0 - 'haberdetay.asp' SQL Injection
PhotoPost PHP 4.6.5 - (ecard.php) SQL Injection
PhotoPost PHP 4.6.5 - 'ecard.php' SQL Injection
sNews 1.7 - (index.php?category) SQL Injection
sNews 1.7 - 'index.php?category' SQL Injection
Ananta Gazelle CMS - Multiple Vulnerabilities
Gazelle CMS - Multiple Vulnerabilities
CF Image Hosting Script 1.3 - (settings.cdb) Information Disclosure
CF Image Hosting Script 1.3 - 'settings.cdb' Information Disclosure
mBlogger 1.0.04 - (viewpost.php) SQL Injection
mBlogger 1.0.04 - 'viewpost.php' SQL Injection
mBlogger 1.0.04 - (addcomment.php) Persistent Cross-Site Scripting
mBlogger 1.0.04 - 'addcomment.php' Persistent Cross-Site Scripting
Chipmunk Board 1.3 - (index.php?forumID) SQL Injection
Chipmunk Board 1.3 - 'index.php?forumID' SQL Injection
SmarterMail 7.x - (7.2.3925) LDAP Injection
SmarterMail 7.x (7.2.3925) - LDAP Injection
xWeblog 2.2 - (oku.asp?makale_id) SQL Injection
xWeblog 2.2 - (arsiv.asp tarih) SQL Injection
xWeblog 2.2 - 'oku.asp?makale_id' SQL Injection
xWeblog 2.2 - 'arsiv.asp tarih' SQL Injection
FCKEditor Core 2.x 2.4.3 - (FileManager upload.php) Arbitrary File Upload
FCKEditor Core 2.x 2.4.3 - 'FileManager upload.php' Arbitrary File Upload
WebRCSdiff 0.9 - (viewver.php) Remote File Inclusion
WebRCSdiff 0.9 - 'viewver.php' Remote File Inclusion
Ananda Real Estate 3.4 - (list.asp) Multiple SQL Injection
Ananda Real Estate 3.4 - 'list.asp' Multiple SQL Injection
SquareCMS 0.3.1 - (post.php) SQL Injection
SquareCMS 0.3.1 - 'post.php' SQL Injection
PHP-AddressBook 6.2.4 - (group.php) SQL Injection
PHP-AddressBook 6.2.4 - 'group.php' SQL Injection
Ignition 1.3 - (page.php) Local File Inclusion
Ignition 1.3 - 'page.php' Local File Inclusion
AWBS 2.9.2 - (cart.php) Blind SQL Injection
AWBS 2.9.2 - 'cart.php' Blind SQL Injection
Woltlab Burning Board 2.3.6 Addon - (hilfsmittel.php) SQL Injection
Woltlab Burning Board 2.3.6 Addon - 'hilfsmittel.php' SQL Injection
WordPress Plugin PHP Speedy 0.5.2 - (admin_container.php) Remote Code Execution
WordPress Plugin PHP Speedy 0.5.2 - 'admin_container.php' Remote Code Execution
ilchClan 1.0.5 - (regist.php) SQL Injection
ilchClan 1.0.5 - 'regist.php' SQL Injection
OrangeHRM 2.6.3 - (PluginController.php) Local File Inclusion
OrangeHRM 2.6.3 - 'PluginController.php' Local File Inclusion
Traidnt UP 2.0 - (view.php) SQL Injection
Traidnt UP 2.0 - 'view.php' SQL Injection
osCommerce 2.3.1 - (banner_manager.php) Arbitrary File Upload
osCommerce 2.3.1 - 'banner_manager.php' Arbitrary File Upload
Extcalendar 2.0b2 - (cal_search.php) SQL Injection
Extcalendar 2.0b2 - 'cal_search.php' SQL Injection
WeBid 1.0.2 - (converter.php) Remote Code Execution
WeBid 1.0.2 - 'converter.php' Remote Code Execution
FCKEditor Core - (FileManager test.html) Arbitrary File Upload (2)
FCKEditor Core - 'FileManager test.html' Arbitrary File Upload (2)
MyBB Advanced Forum Signatures - (afsignatures-2.0.4) SQL Injection
MyBB Advanced Forum Signatures - 'afsignatures-2.0.4' SQL Injection
Ruubikcms 1.1.0 - (/extra/image.php) Local File Inclusion
Ruubikcms 1.1.0 - '/extra/image.php' Local File Inclusion
Dolphin 7.0.7 - (member_menu_queries.php) Remote PHP Code Injection
Dolphin 7.0.7 - 'member_menu_queries.php' Remote PHP Code Injection
WHMCompleteSolution (WHMCS) 3.x.x < 4.0.x - (cart.php) Local File Disclosure
WHMCompleteSolution (WHMCS) 3.x.x < 4.0.x - 'cart.php' Local File Disclosure
CMSmini 0.2.2 - Local File Inclusion
CMS mini 0.2.2 - Local File Inclusion
WHMCS 3.x.x - (clientarea.php) Local File Disclosure
ZenPhoto 1.4.1.4 - (ajax_create_folder.php) Remote Code Execution
PHPMyFAQ 2.7.0 - (ajax_create_folder.php) Remote Code Execution
aidiCMS 3.55 - (ajax_create_folder.php) Remote Code Execution
WHMCompleteSolution (WHMCS) 3.x.x - 'clientarea.php' Local File Disclosure
ZenPhoto 1.4.1.4 - 'ajax_create_folder.php' Remote Code Execution
PHPMyFAQ 2.7.0 - 'ajax_create_folder.php' Remote Code Execution
aidiCMS 3.55 - 'ajax_create_folder.php' Remote Code Execution
WordPress Plugin Zingiri 2.2.3 - (ajax_save_name.php) Remote Code Execution
Support Incident Tracker 3.65 - (translate.php) Remote Code Execution
WordPress Plugin Zingiri 2.2.3 - 'ajax_save_name.php' Remote Code Execution
Support Incident Tracker 3.65 - 'translate.php' Remote Code Execution
FreeWebShop 2.2.9 R2 - (ajax_save_name.php) Remote Code Execution
FreeWebShop 2.2.9 R2 - 'ajax_save_name.php' Remote Code Execution
Log1 CMS 2.0 - (ajax_create_folder.php) Remote Code Execution
Log1 CMS 2.0 - 'ajax_create_folder.php' Remote Code Execution
PmWiki 2.2.34 - (pagelist) Remote PHP Code Injection (2) (Metasploit)
PmWiki 2.2.34 - 'pagelist' Remote PHP Code Injection (2) (Metasploit)
Tiki Wiki CMS Groupware 8.2 - (snarf_ajax.php) Remote PHP Code Injection
Tiki Wiki CMS Groupware 8.2 - 'snarf_ajax.php' Remote PHP Code Injection
Mnews 1.1 - (view.php) SQL Injection
Mnews 1.1 - 'view.php' SQL Injection
appRain CMF 0.1.5 - (Uploadify.php) Unrestricted Arbitrary File Upload
appRain CMF 0.1.5 - 'Uploadify.php' Unrestricted Arbitrary File Upload
BASE 1.4.5 - (base_qry_main.php t_view) SQL Injection
BASE 1.4.5 - 'base_qry_main.php t_view' SQL Injection
Ananta Gazelle CMS - Update Statement SQL Injection
Gazelle CMS 1.0 - Update Statement SQL Injection
PHPFox 3.0.1 - (ajax.php) Remote Command Execution
PHPFox 3.0.1 - 'ajax.php' Remote Command Execution
OpenConf 4.11 - (author/edit.php) Blind SQL Injection
OpenConf 4.11 - 'author/edit.php' Blind SQL Injection
NewsAdd 1.0 - (lerNoticia.php id) SQL Injection
Supernews 2.6.1 - (noticias.php cat) SQL Injection
NewsAdd 1.0 - 'lerNoticia.php id' SQL Injection
Supernews 2.6.1 - 'noticias.php cat' SQL Injection
SN News 1.2 - (visualiza.php) SQL Injection
SN News 1.2 - 'visualiza.php' SQL Injection
PHPNet 1.8 - (ler.php) SQL Injection
PHPNet 1.8 - 'ler.php' SQL Injection
X-Cart Gold 4.5 - (products_map.php symb Parameter) Cross-Site Scripting
X-Cart Gold 4.5 - 'products_map.php symb Parameter' Cross-Site Scripting
Dell SonicWALL Scrutinizer 9.0.1 - (statusFilter.php q Parameter) SQL Injection
Dell SonicWALL Scrutinizer 9.0.1 - 'statusFilter.php q Parameter' SQL Injection
Symantec Web Gateway 5.0.2 - (blocked.php id Parameter) Blind SQL Injection
Symantec Web Gateway 5.0.2 - 'blocked.php id Parameter' Blind SQL Injection
Symantec Web Gateway 5.0.3.18 - (deptUploads_data.php groupid Parameter) Blind SQL Injection
Symantec Web Gateway 5.0.3.18 - 'deptUploads_data.php groupid Parameter' Blind SQL Injection
YourArcadeScript 2.4 - (index.php id Parameter) SQL Injection
YourArcadeScript 2.4 - 'index.php id Parameter' SQL Injection
vlinks 2.0.3 - (site.php id Parameter) SQL Injection
vlinks 2.0.3 - 'site.php id Parameter' SQL Injection
Blog Mod 0.1.9 - (index.php month Parameter) SQL Injection
Blog Mod 0.1.9 - 'index.php month Parameter' SQL Injection
MyBB Profile Albums Plugin 0.9 - (albums.php album Parameter) SQL Injection
MyBB Profile Albums Plugin 0.9 - 'albums.php album Parameter' SQL Injection
YeaLink IP Phone SIP-TxxP firmware 9.70.0.100 - Multiple Vulnerabilities
YeaLink IP Phone SIP-TxxP Firmware 9.70.0.100 - Multiple Vulnerabilities
Linksys WRT54GL (Firmware 4.30.15 build 2) - Multiple Vulnerabilities
Linksys WRT54GL Firmware 4.30.15 build 2 - Multiple Vulnerabilities
NConf 1.3 - (detail.php detail_admin_items.php id Parameter) SQL Injection
NConf 1.3 - 'detail.php detail_admin_items.php id Parameter' SQL Injection
DataLife Engine 9.7 - (preview.php) PHP Code Injection
DataLife Engine 9.7 - 'preview.php' PHP Code Injection
AdaptCMS 2.0.4 - (config.php question Parameter) SQL Injection
AdaptCMS 2.0.4 - 'config.php question Parameter' SQL Injection
CubeCart 5.2.0 - (cubecart.class.php) PHP Object Injection
CubeCart 5.2.0 - 'cubecart.class.php' PHP Object Injection
Piwigo 2.4.6 - (install.php) Arbitrary File Read/Delete
Piwigo 2.4.6 - 'install.php' Arbitrary File Read/Delete
OpenEMR 4.1.1 - (ofc_upload_image.php) Arbitrary File Upload
OpenEMR 4.1.1 - 'ofc_upload_image.php' Arbitrary File Upload
PHPMyRecipes 1.2.2 - (viewrecipe.php r_id Parameter) SQL Injection
PHPMyRecipes 1.2.2 - 'viewrecipe.php r_id Parameter' SQL Injection
MTP Image Gallery 1.0 - (edit_photos.php title Parameter) Cross-Site Scripting
MTP Image Gallery 1.0 - 'edit_photos.php title Parameter' Cross-Site Scripting
WordPress Plugin Count Per Day 3.2.5 - (counter.php) Cross-Site Scripting
WordPress Plugin Count Per Day 3.2.5 - 'counter.php' Cross-Site Scripting
AWS Xms 2.5 - (importer.php what Parameter) Directory Traversal
Pollen CMS 0.6 - (index.php p Parameter) Local File Disclosure
AWS Xms 2.5 - 'importer.php what Parameter' Directory Traversal
Pollen CMS 0.6 - 'index.php p Parameter' Local File Disclosure
WHMCS Group Pay Plugin 1.5 - (grouppay.php hash Parameter) SQL Injection
WHMCompleteSolution (WHMCS) Group Pay Plugin 1.5 - 'grouppay.php hash Parameter' SQL Injection
WHMCS 4.x - (invoicefunctions.php id Parameter) SQL Injection
WHMCS 4.x - 'invoicefunctions.php id Parameter' SQL Injection
AVE.CMS 2.09 - (index.php module Parameter) Blind SQL Injection
AVE.CMS 2.09 - 'index.php module Parameter' Blind SQL Injection
RadioCMS 2.2 - (menager.php playlist_id Parameter) SQL Injection
RadioCMS 2.2 - 'menager.php playlist_id Parameter' SQL Injection
NEXTWEB - (i)Site 'login.asp' SQL Injection
NEXTWEB (i)Site - 'login.asp' SQL Injection
Ruubikcms 1.1.1 - (tinybrowser.php folder Parameter) Directory Traversal
Ruubikcms 1.1.1 - 'tinybrowser.php folder Parameter' Directory Traversal
Simple PHP Agenda 2.2.8 - (edit_event.php eventid Parameter) SQL Injection
Simple PHP Agenda 2.2.8 - 'edit_event.php eventid Parameter' SQL Injection
Top Games Script 1.2 - (play.php gid Parameter) SQL Injection
Top Games Script 1.2 - 'play.php gid Parameter' SQL Injection
Elemata CMS RC3.0 - (global.php id Parameter) SQL Injection
Elemata CMS RC3.0 - 'global.php id Parameter' SQL Injection
PHP-Charts 1.0 - (index.php type Parameter) Remote Code Execution
PHP-Charts 1.0 - 'index.php type Parameter' Remote Code Execution
PHPSlash 0.8.1 - article.php SQL Injection
PHPSlash 0.8.1 - 'article.php' SQL Injection
Telmanik CMS Press 1.01b - (pages.php page_name Parameter) SQL Injection
Telmanik CMS Press 1.01b - 'pages.php page_name Parameter' SQL Injection
glFusion 1.3.0 - (search.php cat_id Parameter) SQL Injection
glFusion 1.3.0 - 'search.php cat_id Parameter' SQL Injection
Vtiger CRM 5.4.0 - (index.php onlyforuser Parameter) SQL Injection
Vtiger CRM 5.4.0 - 'index.php onlyforuser Parameter' SQL Injection
XAMPP 1.8.1 - (lang.php WriteIntoLocalDisk method) Local Write Access
XAMPP 1.8.1 - 'lang.php WriteIntoLocalDisk method' Local Write Access
WHMCS 5.2.7 - SQL Injection
WHMCompleteSolution (WHMCS) 5.2.7 - SQL Injection
PHPList 2.10.2 - 'index.php' Cross-Site Scripting
phpList 2.10.2 - 'index.php' Cross-Site Scripting
Dolibarr ERP/CMS 3.4.0 - (exportcsv.php sondage Parameter) SQL Injection
Dolibarr ERP/CMS 3.4.0 - 'exportcsv.php sondage Parameter' SQL Injection
WHMCS 5.2.8 - SQL Injection
WHMCompleteSolution (WHMCS) 5.2.8 - SQL Injection
Vanilla Forums 2.0 < 2.0.18.5 - (class.utilitycontroller.php) PHP Object Injection
Vanilla Forums 2.0 < 2.0.18.5 - 'class.utilitycontroller.php' PHP Object Injection
Project'Or RIA 3.4.0 - (objectDetail.php objectId Parameter) SQL Injection
Project'Or RIA 3.4.0 - 'objectDetail.php objectId Parameter' SQL Injection
Chamilo Lms 1.9.6 - (profile.php password0 Parameter) SQL Injection
Dokeos 2.2 RC2 - (index.php language Parameter) SQL Injection
Chamilo Lms 1.9.6 - 'profile.php password0 Parameter' SQL Injection
Dokeos 2.2 RC2 - 'index.php language Parameter' SQL Injection
WHMCS 4.x / 5.x - Multiple Web Vulnerabilities
WHMCompleteSolution (WHMCS) 4.x / 5.x - Multiple Web Vulnerabilities
SiteBar 3.3.8 - (translator.php) upd cmd Action edit Variable Arbitrary PHP Code Execution
SiteBar 3.3.8 - 'translator.php' upd cmd Action edit Variable Arbitrary PHP Code Execution
osCommerce 2.3.3.4 - (geo_zones.php zID Parameter) SQL Injection
osCommerce 2.3.3.4 - 'geo_zones.php zID Parameter' SQL Injection
Concrete5 5.6.2.1 - (index.php cID Parameter) SQL Injection
Concrete5 5.6.2.1 - 'index.php cID Parameter' SQL Injection
D-Link DIR-615 Hardware vE4 Firmware v5.10 - Cross-Site Request Forgery
D-Link DIR-615 Hardware vE4 Firmware 5.10 - Cross-Site Request Forgery
WordPress Plugin AdRotate 3.9.4 - (clicktracker.php track Parameter) SQL Injection
WordPress Plugin AdRotate 3.9.4 - 'clicktracker.php track Parameter' SQL Injection
Chipmunk Blog - members.php membername Parameter Cross-Site Scripting
Chipmunk Blog - comments.php membername Parameter Cross-Site Scripting
Chipmunk Blog - photos.php membername Parameter Cross-Site Scripting
Chipmunk Blog - archive.php membername Parameter Cross-Site Scripting
Chipmunk Blog - cat.php membername Parameter Cross-Site Scripting
Chipmunk Blog - 'members.php' Cross-Site Scripting
Chipmunk Blog - 'comments.php' Cross-Site Scripting
Chipmunk Blog - 'photos.php' Cross-Site Scripting
Chipmunk Blog - 'archive.php' Cross-Site Scripting
Chipmunk Blog - 'cat.php' Cross-Site Scripting
webERP 4.11.3 - (SalesInquiry.php SortBy Parameter) SQL Injection
webERP 4.11.3 - 'SalesInquiry.php SortBy Parameter' SQL Injection
ownCloud 4.0.x/4.5.x - (upload.php Filename Parameter) Remote Code Execution
ownCloud 4.0.x/4.5.x - 'upload.php Filename Parameter' Remote Code Execution
InterWorx Control Panel 5.0.13 build 574 - (xhr.php i Parameter) SQL Injection
InterWorx Control Panel 5.0.13 build 574 - 'xhr.php i Parameter' SQL Injection
kitForm CRM Extension 0.43 - (sorter.php sorter_value Parameter) SQL Injection
kitForm CRM Extension 0.43 - 'sorter.php sorter_value Parameter' SQL Injection
dompdf 0.6.0 - (dompdf.php read Parameter) Arbitrary File Read
dompdf 0.6.0 - 'dompdf.php read Parameter' Arbitrary File Read
ArticleFR 11.06.2014 - (data.php) Privilege Escalation
ArticleFR 11.06.2014 - 'data.php' Privilege Escalation
vBulletin 4.0.x < 4.1.2 - (search.php cat Parameter) SQL Injection
vBulletin 4.0.x < 4.1.2 - 'search.php cat Parameter' SQL Injection
Bacula-Web 5.2.10 - (joblogs.php jobid Parameter) SQL Injection
Bacula-Web 5.2.10 - 'joblogs.php jobid Parameter' SQL Injection
net2ftp 0.98 - (stable) 'admin1.template.php' Local File Inclusion / Remote File Inclusion
net2ftp 0.98 (stable) - 'admin1.template.php' Local File Inclusion / Remote File Inclusion
Piwigo 2.6.0 - (picture.php rate Parameter) SQL Injection
Piwigo 2.6.0 - 'picture.php rate Parameter' SQL Injection
PHPMyRecipes 1.2.2 - (dosearch.php words_exact Parameter) SQL Injection
PHPMyRecipes 1.2.2 - 'dosearch.php words_exact Parameter' SQL Injection
Anantasoft Gazelle CMS 1.0 - Cross-Site Scripting / SQL Injection
Gazelle CMS 1.0 - Cross-Site Scripting / SQL Injection
PHPMyRecipes 1.2.2 - (browse.php category Parameter) SQL Injection
PHPMyRecipes 1.2.2 - 'browse.php category Parameter' SQL Injection
u5CMS 3.9.3 - (deletefile.php) Arbitrary File Deletion
u5CMS 3.9.3 - 'deletefile.php' Arbitrary File Deletion
WordPress Plugin Freshmail 1.5.8 - (shortcode.php) SQL Injection
WordPress Plugin Freshmail 1.5.8 - 'shortcode.php' SQL Injection
CreateVision CreateVision CMS - 'id' Parameter SQL Injection
CreateVision CMS - 'id' Parameter SQL Injection
PHPCollab 2.5 - (deletetopics.php) SQL Injection
PHPCollab 2.5 - 'deletetopics.php' SQL Injection
Acuity CMS 2.6.2 - (ASP) '/admin/file_manager/file_upload_submit.asp' Multiple Parameter Arbitrary File Upload / Code Execution
Acuity CMS 2.6.2 - '/admin/file_manager/file_upload_submit.asp' Multiple Parameter Arbitrary File Upload / Code Execution
WHMCS - 'boleto_bb.php' SQL Injection
WHMCompleteSolution (WHMCS) - 'boleto_bb.php' SQL Injection
PHPList 2.10.9 - 'Sajax.php' PHP Code Injection
phpList 2.10.9 - 'Sajax.php' PHP Code Injection
WHMCompleteSolution - (WHMCS) 5.0 'KnowledgeBase.php' search Parameter Cross-Site Scripting
WHMCompleteSolution (WHMCS) 5.0 - 'KnowledgeBase.php' search Parameter Cross-Site Scripting
FCKEditor Core - (Editor 'spellchecker.php') Cross-Site Scripting
FCKEditor Core - 'Editor 'spellchecker.php'' Cross-Site Scripting
PHPList 2.10.18 - 'index.php' SQL Injection
phpList 2.10.18 - 'index.php' SQL Injection
WHMCS 4.5.2 - 'googlecheckout.php' SQL Injection
WHMCompleteSolution (WHMCS) 4.5.2 - 'googlecheckout.php' SQL Injection
SolarWinds Orion IP Address Manager - (IPAM) 'search.aspx' Cross-Site Scripting
SolarWinds Orion IP Address Manager (IPAM) - 'search.aspx' Cross-Site Scripting
PHP gettext 1.0.12 - (gettext.php) Unauthenticated Code Execution
PHP gettext 1.0.12 - 'gettext.php' Unauthenticated Code Execution
WHMCS Addon VMPanel 2.7.4 - SQL Injection
WHMCompleteSolution (WHMCS) Addon VMPanel 2.7.4 - SQL Injection
WD My Cloud Mirror 2.11.153 - Authentication Bypass / Remote Code Execution
MyBB < 1.8.3 (with PHP 5.6 < 5.6.11) - Remote Code Execution
2017-01-25 05:01:18 +00:00
Offensive Security
5c20fdffaa
DB: 2017-01-24
...
2 new exploits
MediaMonkey 3.2.4.1304 - (mp3) Buffer Overflow (PoC)
MediaMonkey 3.2.4.1304 - 'mp3' Buffer Overflow (PoC)
Oracle OpenJDK Runtime Environment 1.8.0_112-b15 - Java Serialization Denial Of Service
DiskSavvy Enterprise - GET Buffer Overflow (Metasploit)
OwnRS Blog 1.2 - (autor.php) SQL Injection
OwnRS Blog 1.2 - 'autor.php' SQL Injection
Mambo Component 'com_sim' 0.8 - Blind SQL Injection
Mambo Component com_sim 0.8 - Blind SQL Injection
Flax Article Manager 1.1 - 'cat_id' SQL Injection
OpenGoo 1.1 - (script_class) Local File Inclusion
EPOLL SYSTEM 3.1 - (Password.dat) Disclosure
Flax Article Manager 1.1 - 'cat_id' Parameter SQL Injection
OpenGoo 1.1 - Local File Inclusion
EPOLL SYSTEM 3.1 - 'Password.dat' Disclosure
ITLPoll 2.7 Stable2 - (index.php id) Blind SQL Injection
ITLPoll 2.7 Stable2 - Blind SQL Injection
Script Toko Online 5.01 - (shop_display_products.php) SQL Injection
Script Toko Online 5.01 - SQL Injection
Wazzum Dating Software - (userid) SQL Injection
Wazzum Dating Software - 'userid' Parameter SQL Injection
SiteXS 0.1.1 - (type) Local File Inclusion
SiteXS CMS 0.1.1 - Local File Inclusion
Joomla! Component com_flashmagazinedeluxe - (mag_id) SQL Injection
OpenX 2.6.3 - (MAX_type) Local File Inclusion
Joomla! Component ElearningForce Flash Magazine Deluxe - SQL Injection
OpenX 2.6.3 - 'MAX_type' Parameter Local File Inclusion
Community CMS 0.4 - (/index.php id) Blind SQL Injection
Community CMS 0.4 - 'id' Parameter Blind SQL Injection
2017-01-24 05:01:17 +00:00
Offensive Security
e96ad87c43
DB: 2017-01-23
...
4 new exploits
SunOS 5.11 ICMP - Denial of Service
Microsoft Power Point 2016 - Java Code Execution
NTOPNG 2.4 Web Interface - Cross-Site Request Forgery
PageKit 1.0.10 - Password Reset
2017-01-23 05:01:18 +00:00
Offensive Security
b1b494f790
DB: 2017-01-21
...
10 new exploits
Complain Management System - SQL injection
ICGames-Games Site Script 1.2 - Authentication Bypass
Domains Marketplace Script 1.1 - Authentication Bypass
ICTutors Tutoring Site Script 1.1 - Authentication Bypass
Mini Blog 1.1 - Authentication Bypass
Job Site PHP Script 1.1 - Authentication Bypass
Music Site Script 1.2 - Authentication Bypass
Affiliate Tracking Script 1.1 - Authentication Bypass
Mini CMS 1.1 - Authentication Bypass
B2B Alibaba Clone Script - SQL Injection
2017-01-21 05:01:18 +00:00
Offensive Security
1441edc4aa
DB: 2017-01-20
...
13 new exploits
Google Android TSP sysfs - 'cmd_store' Multiple Overflows
Linux/x86_64 - Bind 5600 TCP Port - Shellcode (87 bytes)
Tenda ADSL2/2+ Modem D820R - Unauthenticated DNS Change
Pirelli DRG A115 v3 ADSL Router - Unauthenticated DNS Change
Viral Image & Video Sharing GagZone Script - SQL Injection
Image and Video Script - SQL Injection
Social News and Bookmarking Script - SQL Injection
Viral Image Sharing Script - SQL Injection
Vine VideoSite Creator Script - SQL Injection
Job Vacancy Script - SQL Injection
Home of Viral Images_ Videos and Articles Script - SQL Injection
Video Site Creator Script - SQL Injection
Classifieds Script - SQL Injection
2017-01-20 05:01:18 +00:00
Offensive Security
ef112ace5d
DB: 2017-01-19
...
27 new exploits
SentryHD 02.01.12e - Privilege Escalation
Linux/x86-64 - mkdir Shellcode (25 bytes)
ownrs blog beta3 - SQL Injection / Cross-Site Scripting
OwnRS blog beta3 - SQL Injection / Cross-Site Scripting
Dodo's Quiz Script 1.1 - (dodosquiz.php) Local File Inclusion
Dodo's Quiz Script 1.1 - Local File Inclusion
Mambo Component SOBI2 RC 2.8.2 - (bid) SQL Injection
Mambo Component SOBI2 RC 2.8.2 - SQL Injection
Joomla! Component com_pcchess - (game_id) Blind SQL Injection
Joomla! Component com_pcchess - Blind SQL Injection
Medical Clinic Website Script - SQL Injection
Fileserve Clone Script - Authentication Bypass
Auction Website Script - SQL Injection
Wetransfer Clone Script - Authentication Bypass
Finance Website Script - SQL Injection
Justdial Clone Script - Authentication Bypass
Business Directory Script - SQL Injection
Buy and Sell Market Place Software - SQL Injection
Dentist Website Script - SQL Injection
Manufacturer Website Design Script - SQL Injection
Micro Blog Script - SQL Injection
My Private Tutor Website Builder Script - SQL Injection
NGO Directory Script - SQL Injection
Yoga and Fitness Website Script - SQL Injection
NGO Website Script - SQL Injection
Questions and Answers Script 1.1.3 - SQL Injection
Online Mobile Recharge Script - SQL Injection
Clone of Oddee Script 1.1.3 - SQL Injection
Online Printing Business Clone Script - SQL Injection
Online Tshirt Design Script - SQL Injection
Shiksha Educational Website Script - SQL Injection
Study Abroad Educational Website Script - SQL Injection
Courier Management System - SQL Injection
Flippa Website Script - SQL Injection
B2B Script 4.27 - SQL Injection
2017-01-19 05:01:18 +00:00
Offensive Security
19000e5589
DB: 2017-01-18
...
4 new exploits
MkPortal 1.1.1 reviews / Gallery modules - SQL Injection
MKPortal 1.1.1 reviews / Gallery modules - SQL Injection
Joomla! Component GigCalendar 1.0 - SQL Injection
Joomla! Component gigCalendar 1.0 - SQL Injection
Joomla! Component RD-Autos 1.5.5 - 'id' SQL Injection
mkportal 1.2.1 - Multiple Vulnerabilities
Blue Eye CMS 1.0.0 - (clanek) Blind SQL Injection
Free Bible Search PHP Script - 'readbible.php' SQL Injection
Joomla! Component RD-Autos 1.5.5 - SQL Injection
MKPortal 1.2.1 - Multiple Vulnerabilities
Blue Eye CMS 1.0.0 - 'clanek' Parameter Blind SQL Injection
Free Bible Search PHP Script - SQL Injection
Simple PHP NewsLetter 1.5 - (olang) Local File Inclusion
Simple PHP NewsLetter 1.5 - Local File Inclusion
Joomla! Component Gigcal 1.x - 'id' SQL Injection
Joomla! Component Gigcal 1.x - 'id' Parameter SQL Injection
SCMS 1 - 'index.php p' Local File Inclusion
SCMS 1 - Local File Inclusion
Max.Blog 1.0.6 - (show_post.php) SQL Injection
Max.Blog 1.0.6 - 'show_post.php' SQL Injection
Max.Blog 1.0.6 - (submit_post.php) SQL Injection
Max.Blog 1.0.6 - (offline_auth.php) Offline Authentication Bypass
Max.Blog 1.0.6 - 'submit_post.php' SQL Injection
Max.Blog 1.0.6 - 'offline_auth.php' Offline Authentication Bypass
Joomla! Component com_simplefaq - 'catid' Blind SQL Injection
Joomla! Component com_simplefaq - 'catid' Parameter Blind SQL Injection
dirLIST - Multiple Local File Inclusion / Arbitrary File Upload Vulnerabilities
dirLIST 0.3.0 - Local File Inclusion
dirLIST 0.3.0 - Arbitrary File Upload
BoZoN 2.4 - Remote Code Execution
Check Box 2016 Q2 Survey - Multiple Vulnerabilities
Openexpert 0.5.17 - SQL Injection
2017-01-18 05:01:17 +00:00
Offensive Security
7c1c496c25
DB: 2017-01-17
...
11 new exploits
Nofeel FTP Server 3.6 - (CWD) Remote Memory Consumption Exploit
Nofeel FTP Server 3.6 - 'CWD' Command Remote Memory Consumption
Mozilla Firefox < 50.1.0 - Use After Free
Mozilla Firefox < 50.1.0 - Use-After-Free
HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (1)
Microsoft HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (1)
HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (3)
Microsoft HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (3)
HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (2)
Microsoft HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (2)
HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (4)
Microsoft HTML Help Workshop 4.74 - '.hhp' Buffer Overflow (Metasploit) (4)
iSelect v1.4 - Local Buffer Overflow
Word Viewer OCX 3.2 - ActiveX (Save) Remote File Overwrite
Word Viewer OCX 3.2 ActiveX - (Save) Remote File Overwrite
WinaXe Plus 8.7 - Buffer Overflow
DiskBoss Enterprise - GET Buffer Overflow (Metasploit)
Windows x64 - CreateRemoteThread() DLL Injection Shellcode (584 bytes)
Photobase 1.2 - 'Language' Local File Inclusion
Joomla! Component Portfol - (vcatid) SQL Injection
Photobase 1.2 - 'Language' Parameter Local File Inclusion
Joomla! Component Portfol 1.2 - 'vcatid' Parameter SQL Injection
dMx READY (25 - Products) Remote Database Disclosure
dMx READY (25 - Products) - Remote Database Disclosure
Joomla! Component com_gigcal (gigcal_gigs_id) 1.0 - SQL Injection
Joomla! Component GigCalendar 1.0 - SQL Injection
HSPell 1.1 - (cilla.cgi) Remote Command Execution
HSPell 1.1 - 'cilla.cgi' Remote Command Execution
PHP Photo Album 0.8b - (index.php preview) Local File Inclusion
PHP Photo Album 0.8b - 'preview' Parameter Local File Inclusion
Huawei Flybox B660 - Cross-Site Request Forgery
Business Networking Script 8.11 - SQL Injection / Cross-Site Scripting
Pirelli DRG A115 ADSL Router - Unauthenticated DNS Change
Tenda ADSL2/2+ Modem D840R - Unauthenticated DNS Change
Image Sharing Script 4.13 - Multiple Vulnerabilities
Million Pixels 3 - Authentication Bypass
ManagEnegine ADManager Plus 6.5.40 - Multiple Vulnerabilities
2017-01-17 05:01:17 +00:00
Offensive Security
b086c09178
DB: 2017-01-16
...
11 new exploits
9 Network Linkedin Clone Script - Improper Access Restrictions
Article Directory Script Seo 3.2 - Improper Access Restrictions
e-Soft24 Jokes Portal Script Seo 1.3 - Authentication Bypass
MC Smart Shop Script - SQL Injection
MC Buy and Sell Cars Script 1.1 - SQL Injection
MC Yellow Pages Script - SQL Injection
MC Real Estate Pro Script - Improper Access Restrictions
MC Hosting Coupons Script - Cross-Site Request Forgery
MC Inventory Manager Script - Multiple Vulnerabilities
MC Coming Soon Script - Arbitrary File Upload / Improper Access Restrictions
MC Documentation Creator Script - SQL Injection
2017-01-16 05:01:17 +00:00