[ home ] [ contents ] [ platforms ] [ shellcode ] [ search ] [ cracker ] [ links ] [ rss ] [ archive ]

Author: t0pP8uZz <t0pp8uzz [at] googlemail.com>


[ exploits/shellcode ]
-::DATE -::DESCRIPTION -::HITS -::AUTHOR
2008-07-08 Mole Group Hotel Script 1.0 Remote SQL Injection Vulnerability 1198 R D t0pP8uZz
2008-07-08 Mole Group Real Estate Script <= 1.1 Remote SQL Injection Vulnerability 1491 R D t0pP8uZz
2008-07-08 Mole Group Last Minute Script <= 4.0 Remote SQL Injection Vulnerability 2299 R D t0pP8uZz
2008-06-21 Scientific Image DataBase <= 0.41 Blind SQL Injection Exploit 1101 R D t0pP8uZz
2008-06-21 LaserNet CMS <= 1.5 Arbitrary File Upload Exploit 1163 R D t0pP8uZz
2008-06-21 LE.CMS <= 1.4 Remote Arbitrary File Upload Exploit 1447 R D t0pP8uZz
2008-06-21 CCLeague Pro <= 1.2 Insecure Cookie Authentication Vulnerability 1014 R D t0pP8uZz
2008-06-21 OFFL <= 0.2.6 (teams.php fflteam) Remote SQL Injection Vulnerability 1234 R D t0pP8uZz
2008-06-14 Dana IRC <= 1.3 Remote Buffer Overflow PoC 3218 R D t0pP8uZz
2008-06-14 xeCMS <= 1.0.0 RC2 Insecure Cookie Handling Vulnerability 1085 R D t0pP8uZz
2008-06-14 EZCMS <= 1.2 (bSQL/Admin Byapss) Multiple Remote Vulnerabilities 1638 R D t0pP8uZz
2008-06-14 PHPEasyNews <= 1.13 RC2 (post) Remote SQL Injection Vulnerability 1874 R D t0pP8uZz
2008-06-14 AlstraSoft AskMe Pro <= 2.1 Multiple SQL Injection Vulnerabilities 1983 R D t0pP8uZz
2008-05-18 AlkalinePHP <= 0.77.35 (adduser.php) Arbitrary Add-Admin Vuln 1772 R D t0pP8uZz
2008-05-18 easyCMS <= 0.4.2 Multiple Remote Vulnerabilities 1788 R D t0pP8uZz
2008-05-18 GNU/Gallery <= 1.1.1.0 (admin.php) Local File Inclusion Vulnerability 2563 R D t0pP8uZz
2008-05-18 MeltingIce File System <= 1.0 Remote Arbitrary Add-User Exploit 1611 R D t0pP8uZz
2008-05-18 PHP AGTC-Membership System <= 1.1a Arbitrary Add-Admin Exploit 2059 R D t0pP8uZz
2008-05-18 MyPicGallery 1.0 Arbitrary Add-Admin Exploit 3107 R D t0pP8uZz
2008-05-15 Pet Grooming Management System <= 2.0 Arbitrary Add-Admin Exploit 1696 R D t0pP8uZz
2008-05-15 RantX 1.0 Insecure Admin Authentication Vulnerability 1942 R D t0pP8uZz
2008-05-15 Web Slider <= 0.6 Insecure Cookie/Authentication Handling Vuln 1678 R D t0pP8uZz
2008-05-15 Multi-Page Comment System 1.1.0 Insecure Cookie Handling Vulnerability 2267 R D t0pP8uZz
2008-05-14 Freelance Auction Script 1.0 (browseproject.php) SQL Injection Vuln 1742 R D t0pP8uZz
2008-05-14 Feedback and Rating Script 1.0 (detail.php) SQL Injection Vulnerability 2049 R D t0pP8uZz
2008-05-14 AS-GasTracker 1.0.0 Insecure Cookie Handling Vulnerability 1317 R D t0pP8uZz
2008-05-14 ActiveKB <= 1.5 Insecure Cookie Handling/Arbitrary Admin Access 1552 R D t0pP8uZz
2008-05-14 Internet Photoshow (Special Edition) Insecure Cookie Handling Vuln 1630 R D t0pP8uZz
2008-05-12 AJ Article 1.0 (featured_article.php) Remote SQL Injection Vulnerability 1209 R D t0pP8uZz
2008-05-12 AJ Auction <= 6.2.1 (classifide_ad.php) SQL Injection Vulnerability 1343 R D t0pP8uZz
2008-05-12 AJ Classifieds 2008 (index.php) Remote SQL Injection Vulnerability 1484 R D t0pP8uZz
2008-05-12 ZeusCart <= 2.0 (category_list.php) SQL Injection Vulnerability 2227 R D t0pP8uZz
2008-05-06 Pre Shopping Mall 1.1 (search.php search) SQL Injection Vulnerability 3847 R D t0pP8uZz
2008-04-22 Web Calendar <= 4.1 Blind SQL Injection Exploit 2861 R D t0pP8uZz
2008-04-18 2532|Gigs <= 1.2.2 Arbitrary Database Backup/Download Vulnerability 1662 R D t0pP8uZz
2008-04-18 OpenInvoice 0.9 Arbitrary Change User Password Exploit 2041 R D t0pP8uZz
2008-04-18 PhShoutBox <= 1.5 (final) Insecure Cookie Handling Vulnerability 1970 R D t0pP8uZz
2008-04-18 Simple Customer 1.2 (contact.php id) SQL Injection Vulnerability 2619 R D t0pP8uZz
2008-04-13 PostCard 1.0 Remote Insecure Cookie Handling Vulnerability 1710 R D t0pP8uZz
2008-04-12 CcMail <= 1.0.1 Insecure Cookie Handling Vulnerability 3133 R D t0pP8uZz
2008-04-09 KnowledgeQuest 2.5 Arbitrary Add Admin Exploit 2262 R D t0pP8uZz
2008-04-07 Prozilla Freelancers (project) Remote SQL Injection Vulnerability 2009 R D t0pP8uZz
2008-04-07 My Gaming Ladder <= 7.5 (ladderid) SQL Injection Vulnerability 2506 R D t0pP8uZz
2008-04-07 iScripts SocialWare (id) Remote SQL Injection Vulnerbility 2639 R D t0pP8uZz
2008-04-06 Prozilla Top 100 v1.2 Arbitrary Delete Stats Vulnerability 1326 R D t0pP8uZz
2008-04-06 Prozilla Forum Service (forum.php forum) SQL Injection Vulnerability 2030 R D t0pP8uZz
2008-04-06 Prozilla Reviews Script 1.0 Arbitrary Delete User Vulnerability 1359 R D t0pP8uZz
2008-04-06 Prozilla Topsites 1.0 Arbitrary Edit/Add Users Vulnerability 1622 R D t0pP8uZz
2008-04-06 Prozilla Cheat Script 2.0 (id) Remote SQL Injection Vulnerability 2052 R D t0pP8uZz
2008-04-05 Entertainment Directory <= 1.1 SQL Injection Vulnerability 2071 R D t0pP8uZz
2008-04-05 Easynet Forum Host (forum.php forum) SQL Injection Vulnerability 2827 R D t0pP8uZz
2008-04-05 Gaming Directory 1.0 (cat_id) Remote SQL Injection Vulnerability 1743 R D t0pP8uZz
2008-04-05 Picture Rating 1.0 Blind SQL Injection Exploit 1982 R D t0pP8uZz
2008-04-05 Links Directory 1.1 (cat_id) Remote SQL Injection Vulnerability 1978 R D t0pP8uZz
2008-04-05 Software Index 1.1 (cid) Remote SQL Injection Vulnerability 2496 R D t0pP8uZz
2008-04-04 XPOZE Pro <= 3.05 (reed) Remote SQL Injection Exploit 1974 R D t0pP8uZz
2008-04-04 Software Zone Remote SQL Injection Vulnlerabilities 1827 R D t0pP8uZz
2008-04-04 Comdev News Publisher Remote SQL Injection Vulnerability 2201 R D t0pP8uZz
2008-04-04 Affiliate Directory (cat_id) Remote SQL Injection Vulnerbility 2270 R D t0pP8uZz
2008-04-04 PHP Photo Gallery 1.0 (photo_id) SQL Injection Vulnerability 3145 R D t0pP8uZz
2008-04-04 PIGMy-SQL <= 1.4.1 (getdata.php id) Blind SQL Injection Exploit 1937 R D t0pP8uZz
2008-03-12 QuickTalk Forum <= 1.6 Remote Blind SQL Injection Exploit 3437 R D t0pP8uZz
2008-03-11 phpBB Mod FileBase (id) Remote SQL Injection Vulnerability 8510 R D t0pP8uZz
2008-02-20 MultiCart 2.0 (productdetails.php) Remote SQL Injection Exploit 3538 R D t0pP8uZz
2008-01-21 AlstraSoft Forum Pay Per Post Exchange 2.0 SQL Injection Vulnerability 2802 R D t0pP8uZz
2007-12-14 PHP Real Estate (fullnews.php id) Remote SQL Injection Vulnerability 6757 R D t0pP8uZz
2007-12-09 Ace Image Hosting Script (id) Remote SQL Injection Vulnerability 2528 R D t0pP8uZz
2007-12-09 DWdirectory <= 2.1 Remote SQL Injection Vulnerability 2280 R D t0pP8uZz
2007-11-18 HotScripts Clone Script Remote SQL Injection Vulnerability 6115 R D t0pP8uZz
2007-11-13 Myspace Clone Script Remote SQL Injection Vulnerability 8688 R D t0pP8uZz
2007-08-13 Prozilla Webring Website Script (category.php cat) Remote SQL Injection 6587 R D t0pP8uZz
2007-08-06 Prozilla Pub Site Directory (directory.php cat) SQL Injection Vulnerbility 5008 R D t0pP8uZz
2007-07-28 PHP123 Top Sites (category.php cat) Remote SQL Injection Vuln 7078 R D t0pP8uZz
2007-07-27 Adult Directory (cat_id) Remote SQL Injection Vulnerability 7219 R D t0pP8uZz
2007-07-21 WSN Links Basic Edition (displaycat catid) SQL Injection Vulnerbility 4220 R D t0pP8uZz
2007-07-20 Blog System 1.x (index.php news_id) Remote SQL Injection Vulnerability 7023 R D t0pP8uZz
2007-07-18 Pictures Rating (index.php msgid) Remote SQL Injection Vulnerbility 4389 R D t0pP8uZz
2007-07-17 Expert Advisior (index.php id) Remote SQL Injection Vulnerbility 4100 R D t0pP8uZz
2007-07-16 Traffic Stats (referralUrl.php offset) Remote SQL Injection Vulnerbility 4810 R D t0pP8uZz
2007-07-14 Realtor 747 (index.php categoryid) Remote SQL Injection Vulnerbility 4423 R D t0pP8uZz
2007-07-14 Prozilla Directory Script (directory.php cat_id) SQL Injection Vulnerbility 4368 R D t0pP8uZz
2007-07-10 vBulletin Mod RPG Inferno 2.4 (inferno.php) SQL Injection Vulnerability 19264 R D t0pP8uZz
2007-07-06 phpVID 0.9.9 (categories_type.php cat) SQL Injection Vulnerability 4146 R D t0pP8uZz
2007-07-06 eMeeting Online Dating Software 5.2 SQL Injection Vulnerabilities 6210 R D t0pP8uZz
2007-07-03 SuperCali PHP Event Calendar 0.4.0 SQL Injection Vulnerability 3975 R D t0pP8uZz
2007-07-02 YouTube Clone Script (msg.php id) Remote SQL Injection Vulnerability 11182 R D t0pP8uZz
2007-07-01 ArcadeBuilder Game Portal Manager 1.7 Remote SQL Injection Vuln 3965 R D t0pP8uZz
2007-07-01 Easybe 1-2-3 Music Store (process.php) Remote SQL Injection Vuln 4626 R D t0pP8uZz
2007-06-30 Buddy Zone <= 1.5 Multiple SQL Injection Vulnerabilities 4550 R D t0pP8uZz
2007-06-30 TotalCalendar <= 2.402 (view_event.php) Remote SQL Injection Vulns 4609 R D t0pP8uZz
2007-06-29 Buddy Zone 1.5 (view_sub_cat.php cat_id) SQL Injection Vulnerability 4153 R D t0pP8uZz
2007-06-26 elkagroup Image Gallery 1.0 Remote SQL Injection Vulnerability 4291 R D t0pP8uZz
2007-06-25 BugMall Shopping Cart 2.5 (SQL/XSS) Multiple Remote Vulnerabilities 5899 R D t0pP8uZz
2007-06-25 eDocStore (doc.php doc_id) Remote SQL Injection Vulnerability 3963 R D t0pP8uZz
2007-06-24 Pharmacy System 2.0 (index.php ID) Remote SQL Injection Vulnerability 4404 R D t0pP8uZz

[ papers ]
-::DATE -::DESCRIPTION -::HITS -::AUTHOR
2007-08-14XSS The Complete Walkthrough18239Dt0pP8uZz



send all submissions to submit[at]milw0rm.com [gpg]

Copyright © 2004-2008 milw0rm