BugReport
Full Archive|Join Us|About Us|Contact Us
.:Date:. .:Title:. .:Impact:. .:Hits:. .:PoC:.
2014-04-9 Timapoo <= 1.0.0 Multiple Vulnerability High 4079-
2014-02-1 noCMS <= 2.4 Multiple Vulnerability High 7646 X
2012-05-19 PHP CGI Argument Injection Remote Exploit (PHP Version) High 17357 X
2011-08-23 JCE Joomla Extension <=2.0.10 Multiple Vulnerabilities (Updated!) High 327945 X
2011-07-11 Ferdows CMS Pro <=1.1.0 and Ferdows CMS <=9.0.5 Multiple Vulnerabilities Medium 9931 X
2010-10-26 Microsoft Office Groove 2007 DLL Hijacking Exploit (grooveperfmon.dll) High 8878 X
2010-09-13 Adobe LiveCycle ES DLL Hijacking Exploit (.dll) High 9437 X
2010-09-5 chillyCMS Multiple Vulnerabilities Medium 6028-
2010-08-10 ACollab Multiple Vulnerabilities High 5182-
2010-04-11 AneCMS Multiple Vulnerabilities High 5191-
2010-03-13 Ananta Gazelle SQL Injection Vulnerability High 7431-
2010-02-28 1024CMS Blind SQL Injection Vulnerability Medium 10592 X
2010-02-17 SphereCMS Blind SQL Injection Vulnerability Medium 5854-
2010-02-2 Tinypug Multiple Vulnerabilities Medium 9760 X
2010-01-19 Blaze Apps Multiple Vulnerabilities Medium 5276-
2009-12-2 ezContents CMS <=2.0.3 Multiple Vulnerabilities Medium 12696-
2009-04-8 SASP CMS Multiple Vulnerabilities High 17312 X
2009-03-17 PHPRunner <= 4.2 Blind SQL Injection Medium 6987-
2009-01-27 NewsCMSlite Insecure Cookie Handling Medium 6085-
2009-01-22 KWWD SQL Injection Medium 5358-
2009-01-14 phpList <= 2.10.8 Local File inclusion High 19433 X
2008-12-20 chicomas <=2.0.4 Multiple Vulnerabilities High 6812-
2008-12-14 CFAGCMS Remote File Inclusion Medium 10460-
2008-11-8 Enthusiast <=3 Remote Code Execution High 10439-
2008-10-27 Persia BME E-Catalogue SQL Injection Vulnerability High 9583-
2008-10-4 CMME Multiple Information disclosure Medium 10764-
2008-09-23 ParsaWeb CMS SQL Injection High 6371-
2008-09-7 Masir Camp E-Shop Module <= 3.0 SQL Injection Medium 6724-
2008-09-3 TransLucid 1.75 (fckeditor) Remote Arbitrary File Upload Medium 11825-
2008-08-5 IGES CMS <=2.0 Multiple Vulnerabilities Medium 12194 X
2008-07-20 MyBlog <=0.9.8 Multiple Vulnerabilities High 14943 X
2008-07-13 Pluck Local File inclusion Medium 11587 X
2008-06-20 Virtual Support Office-XP Multiple Vulnerabilities. High 12329 X
2008-06-20 GL-SH Deaf Forum <=6.5.5 Multiple Vulnerabilities High 15859 X
2008-06-19 eLineStudio Site Composer (ESC) <=2.6 Multiple Vulnerabilities High 11245 X
2008-06-19 Academic Web Tools CMS <= 1.4.2.8 Multiple Vulnerabilities Medium 9471 X
2008-06-18 doITlive CMS <=2.50 Multiple Vulnerabilities High 8380 X
2008-06-12 Pooya Site Builder (PSB) SQL Injection Vulnerabilities High 7482 X
2008-06-12 Xigla Multiple Products - Multiple Vulnerabilities Medium 3608-
2008-06-10 Realm CMS <= 2.3 Multiple Vulnerabilities. High 6207 X
2008-06-4 QuickerSite <= 1.85 Multiple Vulnerabilities High 11532 X
2008-05-30 Dot Net Nuke (DNN) <= 4.8.3 XSS Vulnerability Low 4794-
2008-04-27 MegaBBS Forum Multiple Vulnerabilities. Medium 8895 X
2008-04-20 Acidcat CMS Multiple Vulnerabilities. High 6507 X
2008-04-16 Carbon Communities forum Multiple Vulnerabilities. High 8101 X
2008-04-13 cpCommerce Multiple Vulnerabilities Medium 3907-
2008-01-28 Mambo 4.6.3 Path Disclosure, XSS , XSRF, DOS Medium 8394-
2008-01-26 [CandyPress] eCommerce suite SQL Injection + XSS + Path Disclosure in CandyPress High 6516 X
2008-01-23 Web Wiz Rich Text Editor Directory traversal + HTM/HTML file creation on the server Medium 3106-
2008-01-23 Web Wiz NewsPad Directory traversal Low 2906-
2008-01-23 Web Wiz Forums Directory traversal Low 4380-
2008-01-22 Mozilla Firefox 2.0.0.11 Hide The Source Code Low 4172-
2008-01-20 Bloofox CMS SQL Injection (Authentication bypass) , Source code disclosure Medium 3420-
2008-01-7 OneCMS Vulnerabilities High 5573 X
2008-01-2 MODx CMS Source code disclosure, local file inclusion Medium 12769-
2007-12-30 Bitweaver source code disclosure, arbitrary file upload Medium 2872-
2007-12-24 Jupiter Cms Multiple Vulnerabilities High 7825 X
2007-12-24 PHP <= 5.2.5 Safe Mode Bypass Medium 17596 X
2007-12-13 Hosting Controller 6.1 - Users can change other's host headers. Medium 2493-
2007-12-13 Hosting Controller 6.1 - Users can enable or disable all Hosting Controller forums by SQL Injection. Medium 5124 X
2007-12-13 Hosting Controller 6.1 - Users can find web site path. Medium 2121-
2007-12-13 Hosting Controller 6.1 - Users can import unwanted plan or change the plans. Medium 2403-
2007-12-13 Hosting Controller 6.1 - Users can find Hosting Controller setup directory. Medium 5498 X
2007-12-13 Hosting Controller 6.1 - Users can see all usernames in the server by Medium 4528 X
2007-12-13 Hosting Controller 6.1 - Users can enable or disable pay type. Medium 2208-
2007-12-13 Hosting Controller 6.1 - Users can delete all of gateway information. Medium 1887-
2007-12-13 Hosting Controller 6.1 - Users can uninstall other's FrontPage extensions. Medium 1922-
2007-12-13 Hosting Controller 6.1 - Users can change his credit amount or increase his discount. Medium 4387 X
2007-12-13 Hosting Controller 6.1 - SQL Injection in "/accounts/accountmanager.asp" Medium 4640 X
2007-12-13 Hosting Controller 6.1 - Remote Attacker can change all user's profiles. Medium 4969 X
2007-12-13 Hosting Controller 6.1 - Remote Users Can Make a New User High 3964 X
2007-12-13 Hosting Controller 6.1 - Remote Authenticated Users Execute a File Under Administrative Priviledge High 6023 X
2007-12-13 Hosting Controller 6.1 - Lets Remote Users Gain Admin Priviledge High 4247 X
2007-12-10 Snitz Forums 2000 Active.asp Remote SQL Injection Vulnerability High 4475 X
2007-11-25 RunCMS <= 1.6 disclaimer.php Remote File Overwrite Exploit High 11468 X
2007-11-25 RunCMS <= 1.6 Local File Inclusion Vulnerability Medium 2227-
2007-11-22 SkyPortal vRC6 Multiple Remote Vulnerabilities High 3837 X
2007-11-22 bcoos 1.0.10 (LFI / SQL Injection) Multiple Remote Vulnerabilities Medium 2379-
2007-10-25 Mozilla Firefox <= 2.0.0.7 Remote Denial of Service Exploit Low 2779-

Copyright © 2007-2014 AmnPardaz