Alberto Trivero
23 exploits
Active since Jan 2005
Citrix XenCenterWeb - Cross-Site Request Forgery via Password Change or VM Stop
CVSS 8.8
Citrix XenCenterWeb - SQL Injection via login.php Username Parameter
Citrix XenCenterWeb - Cross-Site Scripting via Multiple Parameters
Citrix XenCenterWeb - Remote Code Execution via config/writeconfig.php Pool1 Parameter
WordPress Core 1.5.1.1 - SQL Injection
phpBB Topic Calendar 1.0.1 - Cross-Site Scripting via Start Parameter
Ultimate PHP Board 1.9.6 GOLD - users.dat Password Decryptor
Ultimate PHP Board (UPB) 1.9.6 GOLD - Info Disclosure
Ultimate PHP Board 1.8/1.9 - Multiple Cross-Site Scripting Vulnerabilities
Cacti < 0.8.6d - Remote Code Execution via top_graph_header.php config[library_path] Parameter
PortailPHP 1.3 - SQL Injection via id Parameter
PortailPHP 1.3 - 'ID' SQL Injection
myBloggie 2.1.1 - SQL Injection via Multiple Parameters
MyBulletinBoard (MyBB) RC4 - Multiple Cross-Site Scripting / SQL Injections
MyBulletinBoard < 1.00_rc4 - SQL Injection via Multiple Parameters
myBloggie 2.1.1 - Cross-Site Scripting via Year Parameter in viewmode.php
MercuryBoard 1.1.1 - Cross-Site Scripting via Multiple Index.php Parameters
Cacti 0.8.6d - Remote Command Execution
ToutVirtual VirtualIQ Pro 3.2 build 7882 and 3.5 build 8691 - Cross-Site Request Forgery
ASP Nuke 0.80 - SQL Injection via TaskID Parameter
ASP Nuke 0.80 - Cross-Site Scripting via Multiple Registration Parameters
ASP Nuke 0.80 - HTTP Response Splitting via LangCode Parameter
ASP Nuke 0.80 - Cross-Site Scripting via Multiple Registration Parameters