Aliaksandr Hartsuyeu
83 exploits
Active since Jan 2006
RedCMS 0.1 - Cross-Site Scripting via Email, Location, or Website Parameters
RedCMS 0.1 - SQL Injection via Username or Password Parameter
RedCMS 0.1 - SQL Injection via Username or Password Parameter
ExpressionEngine 1.4.1 - Cross-Site Scripting via HTTP_REFERER Header
Pixelpost Photoblog 1.4.3 - Stored Cross-Site Scripting via Add Comment Field
phpjournaler 1.0 - SQL Injection via readold Parameter
GNU phpBook <= 1.3.2 - Remote Code Execution via Email Field
nx5linx 1.0 - SQL Injection via c and l Parameters
oaBoard 1.0 - Remote Code Execution
NX5Linx 1.0 - HTTP Response Splitting
my little homepage my little weblog - Cross-Site Scripting via BBcode Link Tag
MyPhPim 01.05 - SQL Injection via cal_id Parameter or Login Password Field
Fuzzymonkey MY Blog - XSS
MyPhPim 01.05 - SQL Injection via cal_id Parameter or Login Password Field
MD News 1 - SQL Injection via id Parameter
Magic Calendar Lite 1.02 - SQL Injection via $total_login and $total_password Parameters
Maian Weblog 2.0 - SQL Injection via Entry or Email Parameter
Maian Weblog 2.0 - SQL Injection via Entry or Email Parameter
Manic Web MWGuest 2.1.0 - Cross-Site Scripting via Homepage Parameter
microBlog 2.0 RC-10 - SQL Injection via Month or Year Parameter
miniBloggie < 1.0 - SQL Injection via Login Parameters
HTML::BBCode 1.03/1.04 - HTML Injection
PHPenpals < 1.1 - SQL Injection via profile.php personalID Parameter
inTouch 0.5.1 Alpha - SQL Injection via User Parameter
BitDamaged geoBlog MOD_1.0 - SQL Injection via viewcat.php cat Parameter