Creditee: rgod
| Disc. Date | OSVDB ID | CVEID | Title |
|---|---|---|---|
| 2012-08-29 | 85151 | HP SiteScope create() SOAP Call Arbitrary User Creation | |
| 2012-08-29 | 85121 | HP SiteScope UploadFilesHandler Remote Arbitrary File Upload | |
| 2012-08-29 | 85119 | HP SiteScope SOAP Call getFileInternal Remote Arbitrary File Access | |
| 2012-08-29 | 85120 | HP SiteScope SOAP Call getSiteScopeConfiguration Configuration Disclosure | |
| 2012-08-29 | 85118 | HP SiteScope SOAP Call loadFileContent Remote Arbitrary File Access | |
| 2012-08-29 | 85314 | HP SiteScope update() SOAP Call Admin Credential Manipulation | |
| 2011-11-01 | 76772 | Bennet-Tec TList ActiveX Control SaveData() Method Arbitrary File Overwrite | |
| 2011-10-24 | 76539 | Oracle AutoVue ActiveX (AutoVueX.ocx) Multiple Method Arbitrary File Overwrite | |
| 2011-06-06 | 72970 | WebSVN dl.php path Parameter Shell Command Injection | |
| 2011-04-02 | 71560 | GameHouse RealArcade Installer InstallerDlg Module StubbyUtil.ShellCtl.1 ActiveX CopyDocument() Method Arbitrary File Copying | |
| 2011-04-02 | 71561 | GameHouse RealArcade InstallerDlg Module StubbyUtil.ShellCtl.1 ActiveX Multiple Unsafe Methods Arbitrary Command Execution | |
| 2011-04-02 | 71559 | GameHouse RealArcade Installer InstallerDlg Module StubbyUtil.ProcessMgr.1 ActiveX Multiple Unsafe Methods Arbitrary Command Execution | |
| 2011-02-07 | 70841 | 2011-0912 | IBM Lotus Notes cai URI Handler --launcher.library Arbitrary Code Execution |
| 2011-01-03 | 70274 | Visan RocketLife audio.Record ActiveX (ContentMan.dll) Multiple Method Overflow | |
| 2010-12-31 | 74340 | HP Photo Creative audio.Record.1 ActiveX Control (ContentMan.dll) Remote Overflow | |
| 2010-12-30 | 70233 | CA ARCserve D2D Axis2 Default Credentials | |
| 2010-12-29 | 70204 | Chilkat FTP-2 ChilkatFtp2.ChilkatFtp2 ActiveX (ChilkatFtp2.dll) Multiple Method Arbitrary File Overwrite | |
| 2010-07-13 | 67128 | 2010-0906 | Oracle Secure Backup Admin Server index.php Multiple Parameter Arbitrary Code Execution |
| 2010-07-13 | 67129 | 2010-0904 | Oracle Secure Backup Administration Register Globals Emulation Crafted URL Authentication Bypass |
| 2010-03-11 | 62913 | Skype Extras Manager (skypePM.exe) skype-plugin: URI Arbitrary XML File Deletion | |
| 2010-01-12 | 64026 | 2010-1278 | Adobe Download Manager gp.ocx Atlcom.get_atlcom ActiveX Overflow |
| 2009-05-19 | 54706 | AOL Radio IWinAmpActiveX ActiveX (AmpX.dll) ConvertFile() Function Overflow | |
| 2008-01-24 | 40628 | 2008-4549 | ImageShack Toolbar ActiveX (ImageShackToolbar.dll) BuildSlideShow Method Arbitrary Image File Upload |
| 2008-01-16 | 40616 | 2008-4548 | RTS Sentry PTZCamPanelCtrl ActiveX (CamPanel.dll) ConnectServer() Method Overflow |
| 2007-10-29 | 38282 | 2007-5779 | GOM Player GomWebCtrl.GomManager.1 ActiveX (GomWeb3.dll) OpenURL() Method Arbitrary Code Execution |
| 2007-08-28 | 38335 | 2007-4607 | EasyMail Objects EasyMailSMTPObj ActiveX (emsmtp.dll) SubmitToExpress Method Arbitrary Code Execution |
| 2006-12-30 | 49493 | Cacti copy_cacti_user.php template_user Parameter SQL Injection | |
| 2006-12-11 | 34435 | 2006-6565 2006-6564 |
FileZilla Server Multiple Command Wildcard Argument NULL Dereference DoS |
| 2006-09-04 | 28456 | 2006-4602 | TikiWiki jhot.php File Upload Arbitrary PHP Code Execution |
| 2006-08-13 | 29344 | 2006-4191 | XMB memcp.php langfilenew Parameter Traversal Local File Inclusion |
| 2006-08-01 | 27720 | 2006-3994 | XMB u2u.inc.php u2u_send_recp function Function SQL Injection |
| 2006-07-13 | 27164 | 2006-3611 | Phorum pm.php template Parameter Local File Inclusion |
| 2006-06-16 | 26590 | 2006-3105 | bitweaver index.php BWSESSION Parameter CRLF Injection |
| 2006-05-25 | 25777 | 2006-2667 | WordPress User Profile Cache Injection Arbitrary PHP Code Injection |
| 2006-05-15 | 25532 | 2006-2460 | Sugar Suite Multiple Script sugarEntry Global Parameter Remote File Inclusion |
| 2006-05-11 | 25494 | 2006-2406 2006-2405 |
Unclassified NewsBoard unb_lib/abbc.css.php Multiple Parameter Local File Inclusion |
| 2006-04-15 | 24741 | 2006-1839 | PHP Album language.php data_dir Parameter Remote File Inclusion |
| 2006-04-11 | 24559 | 2006-1776 2006-1777 |
Simplog /doc/index.php s Parameter Remote File Inclusion |
| 2006-04-11 | 24560 | 2006-1778 | Simplog index.php blogid Parameter SQL Injection |
| 2006-04-11 | 24561 | 2006-1778 | Simplog archive.php Multiple Parameter SQL Injection |
| 2006-04-11 | 24562 | 2006-1779 | Simplog login.php btag Parameter XSS |
| 2006-03-30 | 24284 | 2006-1595 | Claroline rqmkhtml.php file Parameter Traversal Arbitrary File Access |
| 2006-03-30 | 24285 | 2006-1595 | Claroline rqmkhtml.php file Parameter XSS |
| 2006-03-30 | 24286 | 2006-1594 2006-1596 |
Claroline scormExport.inc.php includePath Parameter Remote File Inclusion |
| 2006-03-20 | 24017 | 2006-1347 | gCards admin/loginfunction.php username Parameter SQL Injection |
| 2006-02-26 | 23529 | 2006-0899 | 4images index.php template Variable Traversal Arbitrary Local File Inclusion |
| 2006-02-09 | 23023 | 2006-0659 2006-1793 |
RunCMS class.forumposts.php bbPath[path] Parameter Local File Inclusion |
| 2006-02-09 | 23024 | 2006-0659 2006-1793 |
RunCMS forumpollrenderer.php bbPath[path] Parameter Local File Inclusion |
| 2006-02-08 | 23058 | 2006-0644 | CPG Dragonfly CMS install.php newlang Parameter Local File Inclusion |
| 2006-02-08 | 23086 | 2006-0625 | SPIP spip_rss.php type_urls Parameter Traversal Local File Inclusion |
| 2006-02-08 | 23087 | 2006-0626 | SPIP spip_acces_doc.php3 file Parameter SQL Injection |
| 2006-02-04 | 22984 | 2006-0583 | Clever Copy mailarticle.php ID Parameter SQL Injection |
| 2006-02-03 | 22921 | 2006-0565 | Loudblog backend_settings.php Multiple Parameter Remote File Inclusion |
| 2006-02-01 | 22866 | 2005-3997 | Zen Cart graphs/banner_daily.php Direct Request Path Disclosure |
| 2006-02-01 | 22867 | 2005-3997 | Zen Cart graphs/banner_infobox.phpDirect Request Path Disclosure |
| 2006-02-01 | 22868 | 2005-3997 | Zen Cart graphs/banner_yearly.php Direct Request Path Disclosure |
| 2006-02-01 | 22869 | 2005-3997 | Zen Cart graphs/banner_monthly.php Direct Request Path Disclosure |
| 2006-02-01 | 22870 | 2005-3997 | Zen Cart application_bottom.php Direct Request Path Disclosure |
| 2006-02-01 | 22871 | 2005-3997 | Zen Cart attributes_preview.php Direct Request Path Disclosure |
| 2006-02-01 | 22872 | 2005-3997 | Zen Cart modules/category_product_listing.php Direct Request Path Disclosure |
| 2006-02-01 | 22873 | 2005-3997 | Zen Cart modules/copy_to_confirm.php Direct Request Path Disclosure |
| 2006-02-01 | 22874 | 2005-3997 | Zen Cart modules/delete_product_confirm.php Direct Request Path Disclosure |
| 2006-02-01 | 22875 | 2005-3997 | Zen Cart modules/move_product_confirm.php Direct Request Path Disclosure |
| 2005-12-29 | 22114 | 2005-4593 | phpDocumentor bug-559668.php FORUM[LIB] Parameter Remote File Inclusion |
| 2005-12-29 | 22115 | 2005-4593 | phpDocumentor file_dialog.php root_dir Parameter Remote File Inclusion |
| 2005-12-24 | 22040 | 2005-4554 | DEV web management system openforum.php cat Parameter SQL Injection |
| 2005-12-24 | 22041 | 2005-4554 | DEV web management system getfile.php cat Parameter SQL Injection |
| 2005-12-24 | 22042 | 2005-4554 | DEV web management system download_now.php target Parameter SQL Injection |
| 2005-12-24 | 22043 | 2005-4555 | DEV web management system add.php Multiple Parameter XSS |
| 2005-12-20 | 22009 | 2005-4468 2005-4467 |
PhpGedView help_text_vars.php PGV_BASE_DIRECTORY Parameter Remote File Inclusion |
| 2005-12-20 | 22010 | 2005-4469 | PhpGedView Registration Multiple Field Arbitrary PHP Code Execution |
| 2005-12-14 | 21753 | 2005-4318 | Limbo CMS index.php _SERVER[REMOTE_ADDR] Parameter SQL Injection |
| 2005-12-14 | 21754 | 2005-4317 | Limbo CMS index.php _SERVER[REMOTE_ADDR] Parameter XSS |
| 2005-12-14 | 21755 | 2005-4319 | Limbo CMS index2.php option Parameter Traversal Arbitrary File Access |
| 2005-12-14 | 21756 | 2005-4317 | Limbo CMS index2.php _SERVER[REMOTE_ADDR] Variable Arbitrary PHP Command Execution |
| 2005-12-14 | 21757 | 2005-4320 | Limbo CMS doc.inc.php Direct Request Path Disclosure |
| 2005-12-14 | 21758 | 2005-4320 | Limbo CMS element.inc.php Direct Request Path Disclosure |
| 2005-12-14 | 21759 | 2005-4320 | Limbo CMS node.inc.php Direct Request Path Disclosure |
| 2005-12-12 | 21724 | 2005-4211 | phpCOIN db.php _CCFG[_PKG_PATH_DBSE] Remote File Inclusion |
| 2005-12-12 | 21725 | 2005-4213 | phpCOIN Cookie Data SQL Injection |
| 2005-12-12 | 21726 | 2005-4214 | phpCOIN config.php Direct Request Path Disclosure |
| 2005-12-12 | 57538 | 2005-4212 | phpCOIN coin_includes/db.php $_CCFG[_PKG_PATH_DBSE] Parameter Traversal Arbitrary File Access |
| 2005-12-08 | 21572 | 2005-4140 | Website Baker user: Field SQL Injection |
| 2005-12-02 | 21411 | 2005-3996 | Zen Cart password_forgotten.php Email Field SQL Injection |
| 2005-11-30 | 21384 | 2005-3968 | PHPX auth.inc.php username Field SQL Injection |
| 2005-11-25 | 21118 | 2005-4167 | eFiction titles.php let Parameter XSS |
| 2005-11-25 | 21119 | eFiction authors.php let Parameter SQL Injection | |
| 2005-11-25 | 21120 | 2005-4168 | eFiction titles.php let Parameter SQL Injection |
| 2005-11-25 | 21121 | 2005-4169 | eFiction viewstory.php sid Parameter SQL Injection |
| 2005-11-25 | 21122 | 2005-4170 | eFiction viewuser.php uid Parameter SQL Injection |
| 2005-11-25 | 21123 | eFiction Login Function username Field SQL Injection | |
| 2005-11-25 | 21124 | 2005-4171 | eFiction Image Upload Arbitrary Command Execution |
| 2005-11-25 | 21125 | 2005-4172 | eFiction storyblock.php Direct Request Path Disclosure |
| 2005-11-25 | 21126 | 2005-4173 | eFiction phpinfo.php Information Disclosure |
| 2005-11-18 | 20951 | 2005-3686 | Unclassified NewsBoard search.inc.php Multiple Parameter SQL Injection |
| 2005-11-12 | 20852 | 2005-3681 | XOOPS WF-Downloads Module viewcat.php list Parameter SQL Injection |
| 2005-11-10 | 20748 | 2005-3648 | Moodle datalib.php get_record() Function Multiple Script SQL Injection |
| 2005-11-10 | 20749 | 2005-3649 | Moodle plot.php user Parameter SQL Injection |
| 2005-11-10 | 20750 | 2005-3649 | Moodle jumpto.php jump Variable Arbitrary Site Redirect |
| 2005-11-08 | 20851 | 2005-4155 | ATutor registration.php Email Field SQL Injection |
| 2005-11-03 | 20474 | 2005-3507 | CuteNews show_archives.php Remote Command Execution |
| 2005-10-23 | 20291 | 2005-3304 | PHP-Nuke Your Account Username Field SQL Injection |
| 2005-10-23 | 20292 | 2005-3304 2009-0302 |
Downloads Module for PHP-Nuke modules.php url Parameter SQL Injection |
| 2005-10-23 | 20293 | 2005-3304 | PHP-Nuke Web_Links Module description Parameter SQL Injection |
| 2005-10-21 | 20266 | 2005-3324 | MWChat chat.php Username Parameter SQL Injection |
| 2005-10-18 | 20070 | 2005-3521 | e107 resetcore.php user Field SQL Injection |
| 2005-10-18 | 20071 | e107 resetcore.php forum_title Field XSS | |
| 2005-10-18 | 20072 | e107 resetcore.php File Upload Arbitrary Command Execution | |
| 2005-10-10 | 19962 | 2005-3259 | versatileBulletinBoard (vBB) login: Field SQL Injection |
| 2005-10-10 | 19963 | 2005-3259 | versatileBulletinBoard (vBB) Search This Thread Feature SQL Injection |
| 2005-10-10 | 19964 | 2005-3259 | versatileBulletinBoard (vBB) index.php Multiple Parameter SQL Injection |
| 2005-10-10 | 19965 | 2005-3259 | versatileBulletinBoard (vBB) Private Message to Field SQL Injection |
| 2005-10-10 | 19966 | 2005-3259 | versatileBulletinBoard (vBB) Search For Posts Feature SQL Injection |
| 2005-10-10 | 19967 | 2005-3259 | versatileBulletinBoard (vBB) userlistpre.php list Parameter SQL Injection |
| 2005-10-10 | 19968 | 2005-3259 | versatileBulletinBoard (vBB) Forgot Password Feature email Field SQL Injection |
| 2005-10-10 | 19969 | versatileBulletinBoard (vBB) dereferrer.php Arbitrary External Site Redirection | |
| 2005-10-10 | 19970 | 2005-3260 | versatileBulletinBoard (vBB) dereferrer.php url Parameter XSS |
| 2005-10-10 | 19971 | 2005-3260 | versatileBulletinBoard (vBB) imagewin.php file Parameter XSS |
| 2005-10-10 | 19972 | versatileBulletinBoard (vBB) userlistpre.php list Parameter XSS | |
| 2005-10-10 | 19973 | 2005-3261 | versatileBulletinBoard (vBB) getversions.php Information Disclosure |
| 2005-10-08 | 19943 | 2005-3236 | Cyphor lostpwd.php nick Field SQL Injection |
| 2005-10-08 | 19944 | 2005-3236 | Cyphor newmsg.php fid Parameter SQL Injection |
| 2005-10-08 | 19945 | 2005-3236 | Cyphor newmsg.php fid Parameter XSS |
| 2005-10-08 | 19946 | 2005-3237 | Cyphor footer.php t_login Parameter XSS |
| 2005-10-06 | 19940 | 2005-3200 | Utopia News Pro header.php sitetitle Parameter XSS |
| 2005-10-06 | 19941 | 2005-3200 | Utopia News Pro footer.php Multiple Parameter XSS |
| 2005-10-06 | 19942 | 2005-3201 | Utopia News Pro news.php newsid Parameter SQL Injection |
| 2005-10-01 | 19935 | 2005-3153 2005-3362 |
myBloggie login.php username Variable Null Character SQL Injection |
| 2005-09-29 | 19885 | 2005-3130 | lucidCMS Login Form login: Field SQL Injection |
| 2005-09-28 | 19718 | 2005-3157 | PHP-Fusion messages.php msg_send Parameter SQL Injection |
| 2005-09-24 | 19679 | 2005-3063 | Mailgust Password Reminder email Field SQL Injection |
| 2005-09-22 | 19650 | 2005-3045 | my little forum search.php search Field SQL Injection |
| 2005-09-22 | 19666 | 2005-3046 | phpMyFAQ password.php user Field SQL Injection |
| 2005-09-22 | 19667 | 2005-3047 | phpMyFAQ footer.php PMF_CONF[version] Parameter XSS |
| 2005-09-22 | 19668 | 2005-3047 | phpMyFAQ header.php PMF_LANG[metaLanguage] Parameter XSS |
| 2005-09-22 | 19669 | 2005-3048 | phpMyFAQ index.php LANGCODE Parameter Traversal Arbitrary File Access |
| 2005-09-22 | 19670 | 2005-3049 | phpMyFAQ Remote Log Access Information Disclosure |
| 2005-09-22 | 19671 | 2005-3050 | phpMyFAQ index.php Malformed LANGCODE Variable Path Disclosure |
| 2005-09-22 | 19672 | phpMyFAQ User Agent Field Arbitrary PHP Code Execution | |
| 2005-09-22 | 19673 | 2005-3048 | phpMyFAQ index.php LANGCODE Variable Traversal Arbitrary PHP Script Execution |
| 2005-09-20 | 19523 | 2005-2997 | PHP Advanced Transfer Manager (phpATM) txt.php currentdir Parameter Traversal Arbitrary File Access |
| 2005-09-20 | 19524 | 2005-2997 | PHP Advanced Transfer Manager (phpATM) htm.php current_dir Parameter Traversal Arbitrary File Access |
| 2005-09-20 | 19525 | 2005-2997 | PHP Advanced Transfer Manager (phpATM) html.php current_dir Parameter Traversal Arbitrary File Access |
| 2005-09-20 | 19526 | PHP Advanced Transfer Manager (phpATM) zip.php current_dir Parameter Traversal Arbitrary File Access | |
| 2005-09-20 | 19527 | PHP Advanced Transfer Manager (phpATM) htm.php Remote HTML Content Inclusion | |
| 2005-09-20 | 19528 | PHP Advanced Transfer Manager (phpATM) html.php Remote HTML Content Inclusion | |
| 2005-09-20 | 19529 | 2006-1209 | PHP Advanced Transfer Manager (phpATM) /users/ Direct Request Password Hash Disclosure |
| 2005-09-20 | 19530 | PHP Advanced Transfer Manager (phpATM) File Upload Arbitrary Command Execution | |
| 2005-09-20 | 19531 | 2005-2998 | PHP Advanced Transfer Manager (phpATM) Default Admin Account |
| 2005-09-20 | 19532 | 2005-2999 | PHP Advanced Transfer Manager (phpATM) test.php Remote Information Disclosure |
| 2005-09-20 | 19533 | 2005-3000 | PHP Advanced Transfer Manager (phpATM) txt.php Multiple Parameter XSS |
| 2005-09-17 | 19478 | 2005-3010 | CuteNews flood.db.php Client-IP HTTP Header Arbitrary Code Injection |
| 2005-09-15 | 19460 | 2005-2987 | Digital Scribe login Field SQL Injection |
| 2005-09-14 | 19411 | 2005-2954 | ATutor password_reminder.php Email Field SQL Injection |
| 2005-09-07 | 19239 | 2005-2855 | Unclassified NewsBoard Description Field XSS |
| 2005-09-05 | 19353 | 2005-2880 | phpCommunityCalendar login.php login Parameter SQL Injection |
| 2005-09-05 | 19354 | 2005-2880 | phpCommunityCalendar week.php LocationID Parameter SQL Injection |
| 2005-09-05 | 19356 | 2005-2882 | phpCommunityCalendar Add Event Multiple Field XSS |
| 2005-09-05 | 19357 | 2005-2882 | phpCommunityCalendar thankyou.php LocationID Parameter XSS |
| 2005-09-05 | 19358 | 2005-2882 | phpCommunityCalendar day.php Multiple Parameter XSS |
| 2005-09-05 | 19359 | 2005-2882 | phpCommunityCalendar event.php Multiple Parameter XSS |
| 2005-09-05 | 19360 | 2005-2882 | phpCommunityCalendar week.php font Parameter XSS |
| 2005-09-05 | 19361 | 2005-2882 | phpCommunityCalendar calDaily.php font Parameter XSS |
| 2005-09-05 | 19362 | 2005-2882 | phpCommunityCalendar calWeekly.php font Parameter XSS |
| 2005-09-05 | 19363 | 2005-2882 | phpCommunityCalendar calWeeklyP.php font Parameter XSS |
| 2005-09-05 | 19364 | 2005-2882 | phpCommunityCalendar calMonthly.php font Parameter XSS |
| 2005-09-05 | 19365 | 2005-2882 | phpCommunityCalendar calMonthlyP.php font Parameter XSS |
| 2005-09-05 | 19366 | 2005-2882 | phpCommunityCalendar calYearly.php font Parameter XSS |
| 2005-09-05 | 19367 | 2005-2882 | phpCommunityCalendar calYearlyP.php font Parameter XSS |
| 2005-09-05 | 19373 | 2005-2886 | MAXdev MD-Pro subjects Module print Parameter XSS |
| 2005-09-05 | 19374 | 2005-2886 | MAXdev MD-Pro Messages Module sitename Parameter XSS |
| 2005-09-05 | 19375 | 2005-2886 | MAXdev MD-Pro openwindow.php hlpfile Parameter XSS |
| 2005-08-30 | 19114 | 2005-2814 | FlatNuke index.php usr Parameter XSS |
| 2005-08-27 | 19051 | 2005-2776 | Looking Glass footer.php Multiple Parameter XSS |
| 2005-08-27 | 19052 | 2005-2776 | Looking Glass header.php Multiple Parameter XSS |
| 2005-08-27 | 19053 | 2005-2777 | Looking Glass lg.php DNS Lookup Field Arbitrary Command Execution |
| 2005-08-21 | 18927 | 2005-2685 | PhpMyExplorer editerfichier.php Authentication Bypass Arbitrary Code Execution |
| 2005-08-21 | 18928 | 2005-2686 | SaveWebPortal menu_dx.php Traversal Arbitrary File Access/Execution |
| 2005-08-21 | 18929 | 2005-2686 | SaveWebPortal menu_sx.php Traversal Arbitrary File Access/Execution |
| 2005-08-21 | 18930 | 2005-2687 | SaveWebPortal menu_dx.php SITE_Path Parameter Remote File Inclusion |
| 2005-08-21 | 18931 | 2005-2687 | SaveWebPortal menu_sx.php CONTENTS_Dir Parameter Remote File Inclusion |
| 2005-08-21 | 18932 | 2005-2688 | SaveWebPortal footer.php Multiple Parameter XSS |
| 2005-08-21 | 18933 | 2005-2688 | SaveWebPortal header.php Multiple Parameter XSS |
| 2005-08-21 | 18934 | 2005-2688 | SaveWebPortal menu_dx.php Multiple Parameter XSS |
| 2005-08-21 | 18935 | 2005-2688 | SaveWebPortal menu_sx.php Multiple Parameter XSS |
| 2005-08-21 | 18936 | 2005-2688 | SaveWebPortal Multiple HTTP Header Arbitrary Script Injection |
| 2005-08-18 | 18832 | 2005-2651 | Zorum prod.php Pipe Character Arbitrary Command Execution |
| 2005-08-18 | 18833 | 2005-2652 | Zorum notification.php Direct Request Path Disclosure |
| 2005-08-18 | 18834 | 2005-2652 | Zorum user.php Direct Request Path Disclosure |
| 2005-08-18 | 18835 | 2005-2652 | Zorum attach.php Direct Request Path Disclosure |
| 2005-08-18 | 18836 | 2005-2652 | Zorum blacklist.php Direct Request Path Disclosure |
| 2005-08-18 | 18837 | 2005-2652 | Zorum forum.php Direct Request Path Disclosure |
| 2005-08-18 | 18838 | 2005-2652 | Zorum globalstat.php Direct Request Path Disclosure |
| 2005-08-18 | 18839 | 2005-2652 | Zorum trace.php Direct Request Path Disclosure |
| 2005-08-18 | 18840 | 2005-2652 | Zorum badwords.php Direct Request Path Disclosure |
| 2005-08-18 | 18841 | 2005-2652 | Zorum flood.php Direct Request Path Disclosure |
| 2005-08-18 | 18813 | 2005-2653 | BBCaffe Email Address Field XSS |
| 2005-08-08 | 18613 | 2005-2569 | FunkBoard editpost.php Multiple Parameter XSS |
| 2005-08-08 | 18614 | 2005-2569 | FunkBoard prefs.php Multiple Parameter XSS |
| 2005-08-08 | 18615 | 2005-2569 | FunkBoard newtopic.php Multiple Parameter XSS |
| 2005-08-08 | 18616 | 2005-2569 | FunkBoard reply.php Multiple Parameter XSS |
| 2005-08-08 | 18617 | 2005-2569 | FunkBoard profile.php Multiple Parameter XSS |
| 2005-08-08 | 18618 | 2005-2569 | FunkBoard register.php Multiple Parameter XSS |
| 2005-08-08 | 18619 | 2005-2570 | FunkBoard forums.php Direct Request Path Disclosure |
| 2005-08-08 | 18620 | 2005-2571 | FunkBoard mysql_install.php Admin/Database Password Manipulation |
| 2005-08-08 | 18622 | FunkBoard mysql_install.php Email Field Arbitrary PHP Code Injection | |
| 2005-08-08 | 18623 | FunkBoard info.php Arbitrary Command Execution | |
| 2005-08-07 | 18625 | 2005-2562 | Gravity Board X login Field SQL Injection |
| 2005-08-07 | 18626 | 2005-2563 | Gravity Board X Template Body XSS |
| 2005-08-07 | 18627 | 2005-2563 | Gravity Board X deletethread.php board_id Parameter XSS |
| 2005-08-07 | 18628 | 2005-2564 | Gravity Board X editcss.php Template Edit Arbitrary Command Execution |
| 2005-08-07 | 18629 | 2005-2565 | Gravity Board X deletethread.php Path Disclosure |
| 2005-08-07 | 18630 | 2005-2565 | Gravity Board X ban.php Direct Request Path Disclosure |
| 2005-08-07 | 18631 | 2005-2565 | Gravity Board X addnews.php Direct Request Path Disclosure |
| 2005-08-07 | 18632 | 2005-2565 | Gravity Board X banned.php Direct Request Path Disclosure |
| 2005-08-07 | 18633 | 2005-2565 | Gravity Board X boardstats.php Direct Request Path Disclosure |
| 2005-08-07 | 18634 | 2005-2565 | Gravity Board X adminform.php Direct Request Path Disclosure |
| 2005-08-07 | 18635 | 2005-2565 | Gravity Board X /forms/ Directory Multiple Script Path Disclosure |
| 2005-08-04 | 18549 | 2005-2537 | FlatNuke structure.php Direct Request Path Disclosure |
| 2005-08-04 | 18550 | 2005-2538 | FlatNuke index.php mod Variable Path Disclosure |
| 2005-08-04 | 18551 | 2005-2539 | FlatNuke structure.php Multiple Parameter XSS |
| 2005-08-04 | 18552 | 2005-2539 | FlatNuke footer.php Multiple Parameter XSS |
| 2005-08-04 | 18553 | 2005-2539 | FlatNuke News Submission Body XSS |
| 2005-08-04 | 18554 | 2005-2540 | FlatNuke User Signature Arbitrary Command Execution |
| 2005-08-03 | 18517 | 2005-2478 | SilverNews login.php username Field SQL Injection |
| 2005-07-29 | 18522 | 2005-2488 | web content management validsession.php strRootpath Parameter XSS |
| 2005-07-29 | 18523 | 2005-2488 | web content management List.php strTable Parameter XSS |
| 2005-07-29 | 18524 | 2005-2489 | web content management AddModifyInput.php Remote Privilege Escalation |
| 2005-07-29 | 18451 | PHPFreeNews Footer.php ScriptVersion Parameter XSS | |
| 2005-07-29 | 18452 | PHPFreeNews ScriptFunctions.php Multiple Parameter XSS | |
| 2005-07-29 | 18453 | PHPFreeNews Logout.php Arbitrary Site Redirect | |
| 2005-07-29 | 18454 | PHPFreeNews /inc/ Multiple Script Direct Request Path Disclosure | |
| 2005-07-29 | 18455 | PHPFreeNews admin.php Information Disclosure | |
| 2005-07-29 | 18456 | PHPFreeNews Default Admin Account Password | |
| 2005-07-29 | 18457 | PHPFreeNews Login password Field SQL Injection | |
| 2005-07-25 | 18277 | Netquery nq_log.txt User Activity Remote Disclosure | |
| 2005-07-25 | 18278 | Netquery submit.php portnum Parameter XSS | |
| 2005-07-25 | 18279 | Netquery nqgeoip2.php Multiple Parameter XSS | |
| 2005-07-25 | 18280 | Netquery nqgeoip.php step Parameter XSS | |
| 2005-07-25 | 18281 | Netquery nqports.php step Parameter XSS | |
| 2005-07-25 | 18282 | Netquery nqports2.php Multiple Parameter XSS | |
| 2005-07-25 | 18283 | Netquery portlist.php portnum Parameter XSS | |
| 2005-07-24 | 18486 | FlexPHPNews index.php Multiple Parameter XSS | |
| 2005-07-24 | 18487 | FlexPHPNews news.php Multiple Parameter XSS | |
| 2005-07-24 | 18488 | FlexPHPNews search.php Multiple Parameter XSS | |
| 2005-07-24 | 18489 | FlexPHPNews catalog.php Multiple Parameter XSS | |
| 2005-07-24 | 18490 | FlexPHPNews usercheck.php logincheck Variable Path Disclosure | |
| 2005-07-24 | 18491 | FlexPHPNews news.php Large Value DoS | |
| 2005-07-24 | 18492 | FlexPHPNews usercheck.php Admin Login Multiple Field SQL Injection | |
| 2005-07-22 | 18295 | 2005-2397 | phpBook guestbook.php admin Parameter XSS |
| 2005-07-21 | 18142 | 2005-2402 | PHPSiteSearch search.php query Parameter XSS |
| 2005-07-21 | 18143 | Ultimate PHP Board (UPB) send.php css Parameter XSS | |
| 2005-07-21 | 18144 | Ultimate PHP Board (UPB) users.php css Parameter XSS | |
| 2005-07-21 | 18145 | Ultimate PHP Board (UPB) top.php css Parameter XSS | |
| 2005-07-21 | 18146 | Ultimate PHP Board (UPB) main.php css Parameter XSS | |
| 2005-07-21 | 18147 | Ultimate PHP Board (UPB) header.php title Parameter XSS | |
| 2005-07-21 | 18135 | Pyrox Search NEWSEARCH.php whatdoreplace Parameter XSS | |
| 2005-07-20 | 18227 | Asn Guestbook header.php version Parameter XSS | |
| 2005-07-20 | 18228 | Asn Guestbook footer.php version Parameter XSS | |
| 2005-07-19 | 18080 | 2005-2394 | CuteNews show_news.php archive Variable Path Disclosure |
| 2005-07-19 | 18081 | 2005-2393 | CuteNews index.php lastusername Parameter XSS |
| 2005-07-19 | 18082 | 2005-2393 | CuteNews search.php selected_search_arch Parameter XSS |
| 2005-07-18 | 18155 | Website Generator spaw_control.class.php Direct Request Path Disclosure | |
| 2005-07-18 | 18156 | Website Generator img_popup.php img_url Parameter XSS | |
| 2005-07-18 | 18157 | Website Generator colorpicker.php theme Parameter XSS | |
| 2005-07-18 | 18158 | Website Generator table.php theme Parameter XSS | |
| 2005-07-18 | 18159 | Website Generator td.php theme Parameter XSS | |
| 2005-07-18 | 18160 | Website Generator confirm.php theme Parameter XSS | |
| 2005-07-18 | 18161 | Website Generator a.php theme Parameter XSS | |
| 2005-07-18 | 18162 | Website Generator banner_library.php theme Parameter XSS | |
| 2005-07-18 | 18163 | Website Generator img_library.php Image Upload Preview Arbitrary PHP Code Execution | |
| 2005-07-18 | 18164 | Form Sender processform.php3 Multiple Parameter XSS | |
| 2005-07-18 | 18062 | 2005-2333 | SEO-Board smilies_popup.php doc Parameter XSS |
| 2005-07-18 | 18065 | 2005-2332 | PHPPageProtect admin.php username Parameter XSS |
| 2005-07-18 | 18066 | 2005-2332 | PHPPageProtect login.php username Parameter XSS |
| 2005-07-13 | 18149 | Mambo com_contents Component cur_template Parameter XSS | |
| 2005-06-06 | 17129 | 2005-1909 | 602LAN SUITE Log File Processing HTML Tag Obfuscation |