- Bux.to Clone Script Insecure Cookie Handling Vulnerability
- OLIB 7 WebView 2.5.1.1 (infile) Local File Inclusion Vulnerability
- vxFtpSrv 2.0.3 CWD command Remote fer BufOverflow poC
- phpscripts Ranking Script Insecure Cookie Handling Vulnerability
- Link Trader (ratelink.php lnkid) Remote SQL Injection Vulnerability
- RPortal 1.1 (file_op) Remote File Inclusion Vulnerability
- phpScheduleIt 1.2.10 (reserve.php) Remote Code Execution Exploit
- ESET SysInspector - 1.1.1.0 (esiadrv.sys) Proof of Concept Exploit
- Crux Gallery 1.32 (index.php theme) Local File Inclusion Vulnerability
- Noname CMS 1.0 Multiple SQL Injection Vulnerabilities
- Discussion Forums 2k v3.3 Multiple SQL Injection Vulnerabilities
- BMForum 5.6 (tagname) Remote SQL Injection Vulnerability
- MySQL Quick Admin 1.5.5 (COOKIE) Local File Inclusion Vulnerability
- ADN Forum 1.0b Blind SQL Injection Exploit
- Rianxosencabos CMS 0.9 Remote Blind SQL Injection Vulnerability
- BookMarks Favourites Script (view_group.php id) SQL Injection Vuln
- GdPicture Pro ActiveX (gdpicture4s.ocx) File Overwrite / Exec Exploit
- Printlog 0.4 (filename) Remote File Disclosure Vulnerability
- SG Real Estate Portal 2.0 Insecure Cookie Handling Vulnerability
- SG Real Estate Portal 2.0 Blind SQL Injection Exploit
- eFront 3.5.1 / build 2710 Remote Arbitrary Upload Vulnerability
- MiNBank 1.5.0 Multiple Remote File Inclusion Vulnerability
- FAQ Management Script (catid) Remote SQL Injection Vulnerability
- Autodesk DWF Viewer Control / LiveUpdate Module Remote Exploit
- SG Real Estate Portal 2.0 Blind SQL Injection/Local File Inclusion Vulns
- ArabCMS (rss.php rss) Local File Inclusion Vulnerability
- PG Matchmaking Script Multiple SQL Injection Vulnerabilities
- Post Comments 3.0 Insecure Cookie Handling Vulnerability
- Events Calendar 1.1 Remote File Inclusion Vulnerability
- Arcadem Pro (articlecat) Remote SQL Injection Vulnerability
- Wireshark 1.x Malformed .ncf packet capture Local Denial of Service PoC
- PHP-Fusion Mod freshlinks (linkid) Remote SQL Injection Vuln
- BbZL.PhP 0.92 Insecure Cookie Handling Vulnerability
- MS Internet Explorer GDI+ Proof of Concept (MS08-0520)
- Joomla Component imagebrowser 0.1.5 RC2 Directory Traversal Vuln
- BbZL.PhP 0.92 (lien_2) Local Directory Traversal Vulnerability
- MS Windows Explorer Unspecified .ZIP File Denial of Service Exploit
- Mozilla Firefox 3.0.3 User Interface Null Pointer Dereference Crash
- Opera 9.52 Window Object Suppressing Remote Denial of Service Exploit
- Pilot Group eTraining (news_read.php id) SQL Injection Vulnerability
- PHPcounter 1.3.2 (index.php name) Remote SQL Injection Exploit
- Pro Chat Rooms 3.0.3 (guid) SQL Injection Vulnerabilities
- ParsaWeb CMS (Search) Remote SQL Injection Vulnerability
- Google Chrome 0.2.149.30 Window Object Suppressing DoS Exploit
- ZEELYRICS 2.0 (bannerclick.php adid) Remote SQL Injection Vulnerability
- X7 Chat 2.0.1A1 Local File Inclusion Vulnerability (original find)
- PHP-Lance 1.52 (show.php catid) Remote SQL Injection Vulnerability
- Yoxel 1.23beta (itpm_estimate.php a) Remote Code Execution Vuln
- PowerPortal 2.0.13 (path) Local Directory Traversal Vulnerability
- MyCard 1.0.2 (gallery.php id) Remote SQL Injection Vulnerability
- PlugSpace 0.1 (index.php navi) Local File Inclusion Vulnerability
- LnBlog 0.9.0 (plugin) Local File Inclusion Vulnerability
- Chilkat IMAP ActiveX 7.9 File Execution / IE DoS Exploit
- CoAST 0.95 (sections_file) Remote File Inclusion Vulnerability
- Real Estate Manager (cat_id) Remote SQL injection vulnerability
- Novell ZENworks Desktop Management 6.5 ActiveX BOF Exploit
- E-Uploader Pro 1.0 Multiple Remote SQL Injection Vulnerabilities
- Joovili 3.0 Multiple SQL Injection Vulnerabilities
- Camera Life 2.6.2b4 Arbitrary File Upload Vulnerability
- Vbgooglemap Hotspot Edition 1.0.3 Remote SQL Injection Vulnerability
- X7 Chat 2.0.5.1 (mini.php help_file) Local File Inclusion Vulnerability
- RPG.Board 0.0.8Beta2 Insecure Cookie Handling Vulnerability
- ASPapp KnowledgeBase (catid) Remote SQL Injection Vulnerability
- RPG.Board 0.0.8Beta2 (showtopic) SQL Injection Vulnerability
- MS Windows GDI+ (.ico File) Remote Division By Zero Exploit
- The Gemini Portal (lang) Remote File Inclusion Vulnerabilities
- Crux Gallery 1.32 Insecure Cookie Handling Vulnerability
- openEngine 2.0 beta2 Remote File Inclusion Vulnerability
- The Gemini Portal 4.7 Insecure Cookie Handling Vulnerability
- Esqlanelapse Software Project 2.6.2 Insecure Cookie Handling Vuln
- Libra PHP File Manager 1.18 Insecure Cookie Handling Vulnerability
- Atomic Photo Album 1.1.0pre4 Insecure Cookie Handling Vulnerability
- WinFTP Server 2.3.0 (NLST) Denial of Service Exploit
- Windows Mobile 6.0 Device long name Remote Reboot Exploit
- Ultimate Webboard 3.00 (Category) SQL Injection Vulnerability
- PromoteWeb MySQL (go.php id) Remote SQL Injection Vulnerability
- 212cafe Board 0.07 (view.php qID) SQL Injection Vulnerability
- barcodegen 2.0.0 (class_dir) Remote File Inclusion Vulnerability
- Atomic Photo Album 1.1.0pre4 Blind SQL Injection Exploit
- Atomic Photo Album 1.1.0pre4 (XSS/SQL) Multiple Remote Vulnerabilities
- LanSuite 3.3.2 (fckeditor) Arbitrary File Upload Exploit
- ICONICS Vessel / Gauge / Switch 8.02.140 ActiveX BOF Exploit (meta)
- openEngine 2.0 beta4 Remote File Inclusion Vulnerability
- Vikingboard 0.2 Beta SQL Column Truncation Vulnerability
- PHP infoBoard v.7 Plus Insecure Cookie Handling Vulnerability
- Libra PHP File Manager 1.18 Local File Inclusion Exploit
- PHP infoBoard v.7 Plus Multiple Remote Vulnerabilities
- K-Lite Mega Codec Pack 3.5.7.0 Local Windows Explorer DoS PoC.
- phpOCS 0.1-beta3 (index.php act) Local File Inclusion Vulnerability
- Vikingboard 0.2 Beta (task) Local File Inclusion Vulnerability
- LanSuite 3.3.2 (design) Local File Inclusion Vulnerability
- AJ Auction Pro Platinum (seller_id) SQL Injection Vulnerability
- MS Windows Wordpad .doc File Local Denial of Service PoC
- Observer 0.3.2.1 Multiple Remote Command Execution Vulnerabilities
- barcodegen 2.0.0 Local File Inclusion Vulnerability
- ADN Forum 1.0b Insecure Cookie Handling Vulnerability
- Jadu CMS for Government (recruit_details.php) SQL Injection Vulnerability
- webcp 0.5.7 (filelocation) Remote File Disclosure Vulnerability
- Google Chrome Browser Carriage Return Null Object Memory Exhaustion
- PHPcounter 1.3.2 (defs.php l) Local File Inclusion Vulnerability
- mailwatch 1.0.4 (docs.php doc) Local File Inclusion Vulnerability
- emergecolab 1.0 (sitecode) Local File Inclusion Vulnerability
- AJ Auction Pro Platinum Skin #2 (detail.php item_id) SQL Injection Vuln
- Jetik Emlak ESA 2.0 Multiple Remote SQL Injection Vulnerabilities
- BurnAware NMSDVDXU ActiveX Remote Arbitrary File Creation/Execution
- Hotscripts Clone (cid) Remote SQL Injection Vulnerability
- Rianxosencabos CMS 0.9 Remote Add Admin Exploit
- Ol Bookmarks Manager 0.7.5 RFI / LFI / SQL Injection Vulnerabilities
- WebPortal CMS 0.7.4 (code) Remote Code Execution Vulnerability
- Ol Bookmarks Manager 0.7.5 Local File Inclusion Vulnerability
- JETIK-WEB Software (sayfa.php kat) SQL Injection Vulnerability
- Galmeta Post CMS 0.2 Remote Code Execution / Arbitrary File Upload Vulns
- Sofi WebGui 0.6.3 PRE (mod_dir) Remote File Inclusion Vulnerability
- iGaming CMS 1.5 Multiple Remote SQL Injection Exploit
- Chilkat XML ActiveX Remote Arbitrary File Creation/Execution Exploit
- OpenRat 0.8-beta4 (tpl_dir) Remote File Inclusion Vulnerability
- CJ Ultra Plus 1.0.4 Cookie Remote SQL Injection Exploit
- Fez 1.3/2.0 RC1 (list.php) Remote SQL Injection Vulnerability
- basebuilder 2.0.1 (main.inc.php) Remote File Inclusion Vulnerability
- Debian Sarge Multiple IMAP Server Denial of Service Exploit
- Sagem Routers F@ST Remote CSRF Exploit (dhcp hostname attack)
- MyBlog 0.9.8 Insecure Cookie Handling Vulnerability
- OpenElec v3.01 (form.php obj) Local File Inclusion Vulnerability
- WSN Links Free 4.0.34P (comments.php) Blind SQL Injection Exploit
- WCMS v.1.0b (news_detail.asp id) Remote SQL Injection Vulnerability
- BuzzyWall 1.3.1 (search.php search) SQL Injection Vulnerability
- WSN Links 2.22/2.23 (vote.php) Remote SQL Injection Vulnerability
- WSN Links 2.20 (comments.php) SQL Injection Vulnerability
- PHP iCalendar 2.24 Insecure Cookie Handling Vulnerability
- WCMS v.1.0b Arbitrary Add Admin Exploit
- Rianxosencabos CMS 0.9 Insecure Cookie Handling Vulnerability
- 6rbScript 3.3 (section.php name) Local File Inclusion Vulnerability
- PHP iCalendar 2.24 (cookie_language) LFI / File Upload Exploit
- Availscript Article Script (view.php v) SQL Injection Vulnerability
- NetArtMedia Real Estate Portal 2.0 SQL Injection Vulnerability
- NetArtMedia Jobs Portal 1.3 Multiple SQL Injection Vulnerabilities
- e107 Plugin my_gallery (image) Remote SQL Injection Vulnerability
- DESlock+ 3.2.7 (vdlptokn.sys) Local Denial of Service Exploit
- Availscript Jobs Portal Script File Upload Vulnerability (auth)
- Rianxosencabos CMS 0.9 Arbitrary Add-Admin Vulnerability
- Diesel Job Site (job_id) Blind SQL Injection Vulnerability
- 6rbScript 3.3 (singerid) Remote SQL Injection Vulnerability
- TWiki 4.2.2 (action) Remote Code Execution Vulnerability
- Basic PHP Events Lister 1.0 Remote SQL Injection Vulnerability
- Invision Power Board 2.3.5 Remote SQL Injection Exploit
- Unreal Tournament 3 v1.3 Remote Directory Traversal Vulnerability
- PHPKB 1.5 Professional Multiple Remote SQL Injection Vulnerabilities
- jPORTAL 2 (humor.php id) Remote SQL Injection Vulnerability
- MyFWB 1.0 (index.php page) Remote SQL Injection Vulnerability
- Diesel Pay Script (area) Remote SQL Injection Vulnerability
- Plaincart 1.1.2 (p) Remote SQL Injection Vulnerability
- Oceandir 2.9 (show_vote.php id) Remote SQL Injection Vulnerability
- Explay CMS 2.1 Insecure Cookie Handling Vulnerability
- Advanced Electron Forum 1.0.6 Remote Code Execution Vulnerability
- DESlock+ 3.2.7 (probe read) Local Kernel Denial of Service PoC
- DESlock+ 3.2.7 Local Kernel Race Condition Denial of Service PoC
- DESlock+ 3.2.7 Local Kernel Overflow PoC
- Explay CMS 2.1 Persistent XSS and CSRF Vulnerability
- easyLink 1.1.0 (detail.php) Remote SQL Injection Vulnerability
- fhttpd 0.4.2 un64() Remote Denial of Service Exploit
- NuMedia Soft NMS DVD Burning SDK Activex (NMSDVDX.dll) Exploit
- Pluck 4.5.3 (update.php) Remote File Corruption Exploit
- AssetMan v2.5-b SQL Injection using Session Fixation Attack
- ProActive CMS (template) Local File Inclusion Vulnerability
- Diesel Joke Site (picture_category.php id) SQL Injection Vulnerability
- CYASK 3.x (collect.php neturl) Local File Disclosure Vulnerability
- ProArcadeScript 1.3 (random) Remote SQL Injection Vulnerability
- E-Php CMS (article.php es_id) Remote SQL Injection Vulnerability
- addalink 4 (category_id) Remote SQL Injection Vulnerability
- addalink 4 Arbitrary Admin Access Vulnerability Exploit
- Femitter FTP Server 1.03 (RETR) Remote Denial of Service Exploit PoC
- addalink 4 Write Approved Links Remote Vulnerability
- X10media Mp3 Search Engine 1.5.5 Remote File Inclusion Vulnerability
- Technote 7 (shop_this_skin_path) Remote File Inclusion Vulnerability
- Cisco Router HTTP Administration CSRF Command Execution Exploit
- Cisco Router HTTP Administration CSRF Command Execution Exploit 2
- PHP Crawler 0.8 (footer) Remote File Inclusion Vulnerability
- WonderWare SuiteLink 2.0 Remote Denial of Service Exploit (meta)
- phpRealty 0.3 (INC) Remote File Inclusion Vulnerability
- Postfix < 2.4.9, 2.5.5, 2.6-20080902 (.forward) Local DoS Exploit
- QuickTime 7.5.5 / ITunes 8.0 Remote Heap Overflow Crash Exploit
- Hotel reservation System (city.asp city) Blind SQL Injection Vulnerability
- Gonafish LinksCaffePRO 4.5 (index.php) SQL Injection Vulnerability
- Attachmax Dolphin 2.1.0 Multiple Remote Vulnerabilities
- iScripts EasyIndex (produid) Remote SQL Injection Vulnerability
- Pre Real Estate Listings (search.php c) SQL Injection Vulnerability
- Link Bid Script 1.5 Multiple Remote SQL Injection Vulnerabilities
- CzarNews 1.20 (Account Hijacking) Remote SQL Injection Vuln
- MS Windows WRITE_ANDX SMB command handling Kernel DoS (meta)
- CzarNews 1.20 (Cookie) Remote SQL Injection Exploit
- Cpanel 11.x (Fantastico) Local File Inclusion Vulnerability (sec bypass)
- Nokia e90 (s60v3) Remote Denial of Service Vulnerability
- Kasseler CMS 1.1.0/1.2.0 Lite Remote SQL Injection Vulnerabilities
- The Personal FTP Server 6.0f RETR Denial of Service Exploit
- Free PHP VX Guestbook 1.06 Insecure Cookie Handling Vulnerability
- Linkarity (link.php) Remote SQL Injection Vulnerability
- Free PHP VX Guestbook 1.06 Arbitrary Database Backup Vulnerability
- Windows Media Encoder wmex.dll ActiveX Control BOF Exploit (MS08-053)
- FoT Video scripti 1.1b (oyun) Remote SQL Injection Vulnerability
- phpSmartCom 0.2 (LFI/SQL) Multiple Remote Vulnerabilities
- Talkback 2.3.6 Multiple Local File Inclusion/PHPInfo Disclosure Vulns
- pLink 2.07 (linkto.php id) Remote Blind SQL Injection Exploit
- Sports Clubs Web Panel 0.0.1 Remote Game Delete Exploit
- WebPortal CMS 0.7.4 (fckeditor) Arbitrary File Upload Vulnerability
- pNews 2.03 (newsid) Remote SQL Injection Vulnerability
- WebPortal CMS 0.7.4 (download.php aid) SQL Injection Exploit
- iBoutique 4.0 (cat) Remote SQL Injection Vulnerability
- SkaLinks 1.5 (register.php) Remote Arbitrary Add Editor Vulnerability
- vbLOGIX Tutorial Script 1.0 (cat_id) SQL Injection Vulnerability
- pForum 1.30 (showprofil.php id) Remote SQL Injection Vulnerability
- Sports Clubs Web Panel 0.0.1 Remote File Upload Vulnerability
- PhpWebGallery 1.3.4 Remote Blind SQL Injection Exploit
- Sports Clubs Web Panel 0.0.1 (id) SQL Injection Vulnerabilities
- Yourownbux 4.0 (COOKIE) Authentication Bypass Exploit
- Easy Photo Gallery 2.1 Arbitrary Add Admin / remove user Vulnerability
- PhpWebGallery 1.3.4 (cat) Blind SQL Injection Vulnerability
- Maxthon Browser 2.1.4.443 UNICODE Remote Denial of Service PoC
- Autodealers CMS AutOnline (id) SQL Injection Vulnerability
- phsBlog 0.2 Bypass SQL Injection Filtering Exploit
- minb 0.1.0 Remote Code Execution Exploit
- D-iscussion Board 3.01 (topic) Local File Inclusion Vulnerability
- Grafitti Forums 1.0 Remote SQL Injection/HTML Injection Vulnerabilities
- Ezphotogallery 2.1 XSS/FD/Bypass/SQL Injection Exploit
- Sports Clubs Web Panel 0.0.1 (p) Local File Inclusion Vulnerability
- Autodealers CMS AutOnline (pageid) SQL Injection Vulnerability
- PhpWebGallery 1.3.4 (XSS/LFI) Multiple Vulnerabilities
- Adobe Acrobat 9 ActiveX Remote Denial of Service Exploit
- Zanfi CMS lite / Jaw Portal free (page) SQL Injection Vulnerability
- phpVID 1.1 (XSS/SQL) Multiple Remote Vulnerabilities
- Wordpress 2.6.1 (SQL Column Truncation) Admin Takeover Exploit
- aspWebAlbum 3.2 Multiple Remote Vulnerabilities
- Zanfi CMS lite / Jaw Portal free (fckeditor) Arbitrary File Upload Vuln
- Libera CMS 1.12 (Cookie) Remote SQL Injection Exploit
- Availscript Jobs Portal Script (jid) SQL Injection Vulnerability (auth)
- Zanfi CMS lite 1.2 Multiple Local File Inclusion Vulnerabilities
- Peachtree Accounting 2004 (PAWWeb11.ocx) ActiveX Insecure Method
- Ananta 10b6 (fckeditor) Remote Arbitrary File Upload Vulnerability
- Availscript Photo Album (pics.php) Multiple Vulnerabilities
- Availscript Classmate Script (viewprofile.php) SQL Injection Vulnerability
- Kim Websites 1.0 (fckeditor) Remote Arbitrary File Upload Vulnerability
- Availscript Article Script (articles.php) Multiple Vulnerabilities
- CMS Buzz (id) Remote SQL Injection Vulnerability
- Microworld Mailscan 5.6.a Password Reveal Exploit
- Stash 1.0.3 Insecure Cookie Handling Vulnerability
- Creator CMS 5.0 (sideid) Remote SQL Injection Vulnerability
- Live TV Script (index.php mid) SQL Injection Vulnerability
- Hot Links SQL-PHP 3 (report.php) Multiple Vulnerabilities
- Stash 1.0.3 Multiple SQL Injection Vulnerabilities
- Alstrasoft Forum (catid) Remote SQL Injection Vulnerability
- Wordpress 2.6.1 SQL Column Truncation Vulnerability