| .:Date:. |
.:Title:. |
.:Impact:. |
.:Hits:. |
.:PoC:. |
| 2011-08-23 |
JCE Joomla Extension <=2.0.10 Multiple Vulnerabilities (Updated!) |
High |
2226 |
X |
| 2011-07-11 |
Ferdows CMS Pro <=1.1.0 and Ferdows CMS <=9.0.5 Multiple Vulnerabilities |
Medium |
1201 |
X |
| 2010-10-26 |
Microsoft Office Groove 2007 DLL Hijacking Exploit (grooveperfmon.dll) |
High |
1232 |
X |
| 2010-09-13 |
Adobe LiveCycle ES DLL Hijacking Exploit (.dll) |
High |
1345 |
X |
| 2010-09-5 |
chillyCMS Multiple Vulnerabilities |
Medium |
843 | - |
| 2010-08-10 |
ACollab Multiple Vulnerabilities |
High |
807 | - |
| 2010-04-11 |
AneCMS Multiple Vulnerabilities |
High |
1128 | - |
| 2010-03-13 |
Ananta Gazelle SQL Injection Vulnerability |
High |
1301 | - |
| 2010-02-28 |
1024CMS Blind SQL Injection Vulnerability |
Medium |
2233 |
X |
| 2010-02-17 |
SphereCMS Blind SQL Injection Vulnerability |
Medium |
1198 | - |
| 2010-02-2 |
Tinypug Multiple Vulnerabilities |
Medium |
1997 |
X |
| 2010-01-19 |
Blaze Apps Multiple Vulnerabilities |
Medium |
1205 | - |
| 2009-12-2 |
ezContents CMS <=2.0.3 Multiple Vulnerabilities |
Medium |
4688 | - |
| 2009-04-8 |
SASP CMS Multiple Vulnerabilities |
High |
8710 |
X |
| 2009-03-17 |
PHPRunner <= 4.2 Blind SQL Injection |
Medium |
2559 | - |
| 2009-01-27 |
NewsCMSlite Insecure Cookie Handling |
Medium |
1831 | - |
| 2009-01-22 |
KWWD SQL Injection |
Medium |
1821 | - |
| 2009-01-14 |
phpList <= 2.10.8 Local File inclusion |
High |
9147 |
X |
| 2008-12-20 |
chicomas <=2.0.4 Multiple Vulnerabilities |
High |
2442 | - |
| 2008-12-14 |
CFAGCMS Remote File Inclusion |
Medium |
5172 | - |
| 2008-11-8 |
Enthusiast <=3 Remote Code Execution |
High |
5799 | - |
| 2008-10-27 |
Persia BME E-Catalogue SQL Injection Vulnerability |
High |
5664 | - |
| 2008-10-4 |
CMME Multiple Information disclosure |
Medium |
5654 | - |
| 2008-09-23 |
ParsaWeb CMS SQL Injection |
High |
2255 | - |
| 2008-09-7 |
Masir Camp E-Shop Module <= 3.0 SQL Injection |
Medium |
2366 | - |
| 2008-09-3 |
TransLucid 1.75 (fckeditor) Remote Arbitrary File Upload |
Medium |
2800 | - |
| 2008-08-5 |
IGES CMS <=2.0 Multiple Vulnerabilities |
Medium |
4446 |
X |
| 2008-07-20 |
MyBlog <=0.9.8 Multiple Vulnerabilities |
High |
5941 |
X |
| 2008-07-13 |
Pluck Local File inclusion |
Medium |
3895 |
X |
| 2008-06-20 |
Virtual Support Office-XP Multiple Vulnerabilities. |
High |
4094 |
X |
| 2008-06-20 |
GL-SH Deaf Forum <=6.5.5 Multiple Vulnerabilities |
High |
4946 |
X |
| 2008-06-19 |
eLineStudio Site Composer (ESC) <=2.6 Multiple Vulnerabilities |
High |
3818 |
X |
| 2008-06-19 |
Academic Web Tools CMS <= 1.4.2.8 Multiple Vulnerabilities |
Medium |
4193 |
X |
| 2008-06-18 |
doITlive CMS <=2.50 Multiple Vulnerabilities |
High |
3933 |
X |
| 2008-06-12 |
Pooya Site Builder (PSB) SQL Injection Vulnerabilities |
High |
4512 |
X |
| 2008-06-12 |
Xigla Multiple Products - Multiple Vulnerabilities |
Medium |
2212 | - |
| 2008-06-10 |
Realm CMS <= 2.3 Multiple Vulnerabilities. |
High |
3553 |
X |
| 2008-06-4 |
QuickerSite <= 1.85 Multiple Vulnerabilities |
High |
5453 |
X |
| 2008-05-30 |
Dot Net Nuke (DNN) <= 4.8.3 XSS Vulnerability |
Low |
2171 | - |
| 2008-04-27 |
MegaBBS Forum Multiple Vulnerabilities. |
Medium |
4605 |
X |
| 2008-04-20 |
Acidcat CMS Multiple Vulnerabilities. |
High |
3402 |
X |
| 2008-04-16 |
Carbon Communities forum Multiple Vulnerabilities. |
High |
4346 |
X |
| 2008-04-13 |
cpCommerce Multiple Vulnerabilities |
Medium |
2586 | - |
| 2008-01-28 |
Mambo 4.6.3 Path Disclosure, XSS , XSRF, DOS |
Medium |
4578 | - |
| 2008-01-26 |
[CandyPress] eCommerce suite SQL Injection + XSS + Path Disclosure in CandyPress |
High |
3411 |
X |
| 2008-01-23 |
Web Wiz Rich Text Editor Directory traversal + HTM/HTML file creation on the server |
Medium |
1806 | - |
| 2008-01-23 |
Web Wiz NewsPad Directory traversal |
Low |
1527 | - |
| 2008-01-23 |
Web Wiz Forums Directory traversal |
Low |
2190 | - |
| 2008-01-22 |
Mozilla Firefox 2.0.0.11 Hide The Source Code |
Low |
1550 | - |
| 2008-01-20 |
Bloofox CMS SQL Injection (Authentication bypass) , Source code disclosure |
Medium |
1839 | - |
| 2008-01-7 |
OneCMS Vulnerabilities |
High |
2675 |
X |
| 2008-01-2 |
MODx CMS Source code disclosure, local file inclusion |
Medium |
10970 | - |
| 2007-12-30 |
Bitweaver source code disclosure, arbitrary file upload |
Medium |
1549 | - |
| 2007-12-24 |
Jupiter Cms Multiple Vulnerabilities |
High |
4408 |
X |
| 2007-12-24 |
PHP <= 5.2.5 Safe Mode Bypass |
Medium |
7844 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Users can change other's host headers. |
Medium |
1118 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can enable or disable all Hosting Controller forums by SQL Injection. |
Medium |
2213 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Users can find web site path. |
Medium |
954 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can import unwanted plan or change the plans. |
Medium |
895 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can find Hosting Controller setup directory. |
Medium |
1977 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Users can see all usernames in the server by |
Medium |
1662 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Users can enable or disable pay type. |
Medium |
788 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can delete all of gateway information. |
Medium |
710 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can uninstall other's FrontPage extensions. |
Medium |
682 | - |
| 2007-12-13 |
Hosting Controller 6.1 - Users can change his credit amount or increase his discount. |
Medium |
1324 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - SQL Injection in "/accounts/accountmanager.asp" |
Medium |
1557 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Remote Attacker can change all user's profiles. |
Medium |
1279 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Remote Users Can Make a New User |
High |
1321 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Remote Authenticated Users Execute a File Under Administrative Priviledge |
High |
1416 |
X |
| 2007-12-13 |
Hosting Controller 6.1 - Lets Remote Users Gain Admin Priviledge |
High |
1397 |
X |
| 2007-12-10 |
Snitz Forums 2000 Active.asp Remote SQL Injection Vulnerability |
High |
1762 |
X |
| 2007-11-25 |
RunCMS <= 1.6 disclaimer.php Remote File Overwrite Exploit |
High |
5587 |
X |
| 2007-11-25 |
RunCMS <= 1.6 Local File Inclusion Vulnerability |
Medium |
820 | - |
| 2007-11-22 |
SkyPortal vRC6 Multiple Remote Vulnerabilities |
High |
1368 |
X |
| 2007-11-22 |
bcoos 1.0.10 (LFI / SQL Injection) Multiple Remote Vulnerabilities |
Medium |
944 | - |
| 2007-10-25 |
Mozilla Firefox <= 2.0.0.7 Remote Denial of Service Exploit |
Low |
1009 | - |