[ home ] [ contents ] [ platforms ] [ shellcode ] [ search ] [ cracker ] [ links ] [ rss ] [ archive ]

Author: t0pP8uZz <t0pp8uzz [at] googlemail.com>


[ exploits/shellcode ]
-::DATE -::DESCRIPTION -::HITS -::AUTHOR
2008-08-25 WebBoard <= 2.0 Arbitrary SQL Question/Anwser Delete Vulnerability 1716 R D t0pP8uZz
2008-08-25 GeekLog <= 1.5.0 Remote Arbitrary File Upload Exploit 2658 R D t0pP8uZz
2008-07-08 Mole Group Hotel Script 1.0 Remote SQL Injection Vulnerability 1460 R D t0pP8uZz
2008-07-08 Mole Group Real Estate Script <= 1.1 Remote SQL Injection Vulnerability 1727 R D t0pP8uZz
2008-07-08 Mole Group Last Minute Script <= 4.0 Remote SQL Injection Vulnerability 2614 R D t0pP8uZz
2008-06-21 Scientific Image DataBase <= 0.41 Blind SQL Injection Exploit 1321 R D t0pP8uZz
2008-06-21 LaserNet CMS <= 1.5 Arbitrary File Upload Exploit 1347 R D t0pP8uZz
2008-06-21 LE.CMS <= 1.4 Remote Arbitrary File Upload Exploit 1807 R D t0pP8uZz
2008-06-21 CCLeague Pro <= 1.2 Insecure Cookie Authentication Vulnerability 1238 R D t0pP8uZz
2008-06-21 OFFL <= 0.2.6 (teams.php fflteam) Remote SQL Injection Vulnerability 1507 R D t0pP8uZz
2008-06-14 Dana IRC <= 1.3 Remote Buffer Overflow PoC 3735 R D t0pP8uZz
2008-06-14 xeCMS <= 1.0.0 RC2 Insecure Cookie Handling Vulnerability 1248 R D t0pP8uZz
2008-06-14 EZCMS <= 1.2 (bSQL/Admin Byapss) Multiple Remote Vulnerabilities 1862 R D t0pP8uZz
2008-06-14 PHPEasyNews <= 1.13 RC2 (post) Remote SQL Injection Vulnerability 2034 R D t0pP8uZz
2008-06-14 AlstraSoft AskMe Pro <= 2.1 Multiple SQL Injection Vulnerabilities 2199 R D t0pP8uZz
2008-05-18 AlkalinePHP <= 0.77.35 (adduser.php) Arbitrary Add-Admin Vuln 1948 R D t0pP8uZz
2008-05-18 easyCMS <= 0.4.2 Multiple Remote Vulnerabilities 1925 R D t0pP8uZz
2008-05-18 GNU/Gallery <= 1.1.1.0 (admin.php) Local File Inclusion Vulnerability 2818 R D t0pP8uZz
2008-05-18 MeltingIce File System <= 1.0 Remote Arbitrary Add-User Exploit 1799 R D t0pP8uZz
2008-05-18 PHP AGTC-Membership System <= 1.1a Arbitrary Add-Admin Exploit 2213 R D t0pP8uZz
2008-05-18 MyPicGallery 1.0 Arbitrary Add-Admin Exploit 3296 R D t0pP8uZz
2008-05-15 Pet Grooming Management System <= 2.0 Arbitrary Add-Admin Exploit 1835 R D t0pP8uZz
2008-05-15 RantX 1.0 Insecure Admin Authentication Vulnerability 2111 R D t0pP8uZz
2008-05-15 Web Slider <= 0.6 Insecure Cookie/Authentication Handling Vuln 1826 R D t0pP8uZz
2008-05-15 Multi-Page Comment System 1.1.0 Insecure Cookie Handling Vulnerability 2468 R D t0pP8uZz
2008-05-14 Freelance Auction Script 1.0 (browseproject.php) SQL Injection Vuln 1981 R D t0pP8uZz
2008-05-14 Feedback and Rating Script 1.0 (detail.php) SQL Injection Vulnerability 2281 R D t0pP8uZz
2008-05-14 AS-GasTracker 1.0.0 Insecure Cookie Handling Vulnerability 1497 R D t0pP8uZz
2008-05-14 ActiveKB <= 1.5 Insecure Cookie Handling/Arbitrary Admin Access 1731 R D t0pP8uZz
2008-05-14 Internet Photoshow (Special Edition) Insecure Cookie Handling Vuln 1852 R D t0pP8uZz
2008-05-12 AJ Article 1.0 (featured_article.php) Remote SQL Injection Vulnerability 1346 R D t0pP8uZz
2008-05-12 AJ Auction <= 6.2.1 (classifide_ad.php) SQL Injection Vulnerability 1500 R D t0pP8uZz
2008-05-12 AJ Classifieds 2008 (index.php) Remote SQL Injection Vulnerability 1657 R D t0pP8uZz
2008-05-12 ZeusCart <= 2.0 (category_list.php) SQL Injection Vulnerability 2413 R D t0pP8uZz
2008-05-06 Pre Shopping Mall 1.1 (search.php search) SQL Injection Vulnerability 4126 R D t0pP8uZz
2008-04-22 Web Calendar <= 4.1 Blind SQL Injection Exploit 3024 R D t0pP8uZz
2008-04-18 2532|Gigs <= 1.2.2 Arbitrary Database Backup/Download Vulnerability 1805 R D t0pP8uZz
2008-04-18 OpenInvoice 0.9 Arbitrary Change User Password Exploit 2201 R D t0pP8uZz
2008-04-18 PhShoutBox <= 1.5 (final) Insecure Cookie Handling Vulnerability 2161 R D t0pP8uZz
2008-04-18 Simple Customer 1.2 (contact.php id) SQL Injection Vulnerability 2778 R D t0pP8uZz
2008-04-13 PostCard 1.0 Remote Insecure Cookie Handling Vulnerability 1838 R D t0pP8uZz
2008-04-12 CcMail <= 1.0.1 Insecure Cookie Handling Vulnerability 3370 R D t0pP8uZz
2008-04-09 KnowledgeQuest 2.5 Arbitrary Add Admin Exploit 2407 R D t0pP8uZz
2008-04-07 Prozilla Freelancers (project) Remote SQL Injection Vulnerability 2145 R D t0pP8uZz
2008-04-07 My Gaming Ladder <= 7.5 (ladderid) SQL Injection Vulnerability 2692 R D t0pP8uZz
2008-04-07 iScripts SocialWare (id) Remote SQL Injection Vulnerbility 2793 R D t0pP8uZz
2008-04-06 Prozilla Top 100 v1.2 Arbitrary Delete Stats Vulnerability 1453 R D t0pP8uZz
2008-04-06 Prozilla Forum Service (forum.php forum) SQL Injection Vulnerability 2213 R D t0pP8uZz
2008-04-06 Prozilla Reviews Script 1.0 Arbitrary Delete User Vulnerability 1487 R D t0pP8uZz
2008-04-06 Prozilla Topsites 1.0 Arbitrary Edit/Add Users Vulnerability 1765 R D t0pP8uZz
2008-04-06 Prozilla Cheat Script 2.0 (id) Remote SQL Injection Vulnerability 2210 R D t0pP8uZz
2008-04-05 Entertainment Directory <= 1.1 SQL Injection Vulnerability 2206 R D t0pP8uZz
2008-04-05 Easynet Forum Host (forum.php forum) SQL Injection Vulnerability 2967 R D t0pP8uZz
2008-04-05 Gaming Directory 1.0 (cat_id) Remote SQL Injection Vulnerability 1871 R D t0pP8uZz
2008-04-05 Picture Rating 1.0 Blind SQL Injection Exploit 2160 R D t0pP8uZz
2008-04-05 Links Directory 1.1 (cat_id) Remote SQL Injection Vulnerability 2127 R D t0pP8uZz
2008-04-05 Software Index 1.1 (cid) Remote SQL Injection Vulnerability 2638 R D t0pP8uZz
2008-04-04 XPOZE Pro <= 3.05 (reed) Remote SQL Injection Exploit 2119 R D t0pP8uZz
2008-04-04 Vastal I-Tech Software Zone (cat_id) SQL Injection Vulnerability 1947 R D t0pP8uZz
2008-04-04 Comdev News Publisher Remote SQL Injection Vulnerability 2413 R D t0pP8uZz
2008-04-04 Affiliate Directory (cat_id) Remote SQL Injection Vulnerbility 2395 R D t0pP8uZz
2008-04-04 PHP Photo Gallery 1.0 (photo_id) SQL Injection Vulnerability 3379 R D t0pP8uZz
2008-04-04 PIGMy-SQL <= 1.4.1 (getdata.php id) Blind SQL Injection Exploit 2096 R D t0pP8uZz
2008-03-12 QuickTalk Forum <= 1.6 Remote Blind SQL Injection Exploit 3604 R D t0pP8uZz
2008-03-11 phpBB Mod FileBase (id) Remote SQL Injection Vulnerability 9660 R D t0pP8uZz
2008-02-20 MultiCart 2.0 (productdetails.php) Remote SQL Injection Exploit 3739 R D t0pP8uZz
2008-01-21 AlstraSoft Forum Pay Per Post Exchange 2.0 SQL Injection Vulnerability 3042 R D t0pP8uZz
2007-12-14 PHP Real Estate (fullnews.php id) Remote SQL Injection Vulnerability 7043 R D t0pP8uZz
2007-12-09 Ace Image Hosting Script (id) Remote SQL Injection Vulnerability 2677 R D t0pP8uZz
2007-12-09 DWdirectory <= 2.1 Remote SQL Injection Vulnerability 2407 R D t0pP8uZz
2007-11-18 HotScripts Clone Script Remote SQL Injection Vulnerability 6288 R D t0pP8uZz
2007-11-13 Myspace Clone Script Remote SQL Injection Vulnerability 9025 R D t0pP8uZz
2007-08-13 Prozilla Webring Website Script (category.php cat) Remote SQL Injection 6768 R D t0pP8uZz
2007-08-06 Prozilla Pub Site Directory (directory.php cat) SQL Injection Vulnerbility 5128 R D t0pP8uZz
2007-07-28 PHP123 Top Sites (category.php cat) Remote SQL Injection Vuln 7217 R D t0pP8uZz
2007-07-27 Adult Directory (cat_id) Remote SQL Injection Vulnerability 7375 R D t0pP8uZz
2007-07-21 WSN Links Basic Edition (displaycat catid) SQL Injection Vulnerbility 4410 R D t0pP8uZz
2007-07-20 Blog System 1.x (index.php news_id) Remote SQL Injection Vulnerability 7260 R D t0pP8uZz
2007-07-18 Pictures Rating (index.php msgid) Remote SQL Injection Vulnerbility 4523 R D t0pP8uZz
2007-07-17 Expert Advisior (index.php id) Remote SQL Injection Vulnerbility 4253 R D t0pP8uZz
2007-07-16 Traffic Stats (referralUrl.php offset) Remote SQL Injection Vulnerbility 4930 R D t0pP8uZz
2007-07-14 Realtor 747 (index.php categoryid) Remote SQL Injection Vulnerbility 6950 R D t0pP8uZz
2007-07-14 Prozilla Directory Script (directory.php cat_id) SQL Injection Vulnerbility 4486 R D t0pP8uZz
2007-07-10 vBulletin Mod RPG Inferno 2.4 (inferno.php) SQL Injection Vulnerability 21044 R D t0pP8uZz
2007-07-06 phpVID 0.9.9 (categories_type.php cat) SQL Injection Vulnerability 4283 R D t0pP8uZz
2007-07-06 eMeeting Online Dating Software 5.2 SQL Injection Vulnerabilities 6374 R D t0pP8uZz
2007-07-03 SuperCali PHP Event Calendar 0.4.0 SQL Injection Vulnerability 4101 R D t0pP8uZz
2007-07-02 YouTube Clone Script (msg.php id) Remote SQL Injection Vulnerability 11513 R D t0pP8uZz
2007-07-01 ArcadeBuilder Game Portal Manager 1.7 Remote SQL Injection Vuln 4129 R D t0pP8uZz
2007-07-01 Easybe 1-2-3 Music Store (process.php) Remote SQL Injection Vuln 4873 R D t0pP8uZz
2007-06-30 Buddy Zone <= 1.5 Multiple SQL Injection Vulnerabilities 4688 R D t0pP8uZz
2007-06-30 TotalCalendar <= 2.402 (view_event.php) Remote SQL Injection Vulns 4797 R D t0pP8uZz
2007-06-29 Buddy Zone 1.5 (view_sub_cat.php cat_id) SQL Injection Vulnerability 4297 R D t0pP8uZz
2007-06-26 elkagroup Image Gallery 1.0 Remote SQL Injection Vulnerability 4426 R D t0pP8uZz
2007-06-25 BugMall Shopping Cart 2.5 (SQL/XSS) Multiple Remote Vulnerabilities 6086 R D t0pP8uZz
2007-06-25 eDocStore (doc.php doc_id) Remote SQL Injection Vulnerability 4098 R D t0pP8uZz
2007-06-24 Pharmacy System 2.0 (index.php ID) Remote SQL Injection Vulnerability 4534 R D t0pP8uZz

[ papers ]
-::DATE -::DESCRIPTION -::HITS -::AUTHOR
2007-08-14XSS The Complete Walkthrough19422Dt0pP8uZz



send all submissions to submit[at]milw0rm.com [gpg]

Copyright © 2004-2008 milw0rm