AlpHaNiX
50 exploits
Active since Dec 2008
Mini-stream Shadow Stream Recorder 3.0.1.7 - Remote Code Execution via Long URI in Playlist File
ASP Product Catalog 1.0 - Cross-Site Scripting via Search Keywords Parameter
CF Shopkart 5.2.2 - SQL Injection via Category Parameter
ASP AutoDealer - SQL Injection via ID Parameter
Nightfall Personal Diary 1.0 - Cross-Site Scripting via login.asp Username Parameter
PostEcards - SQL Injection via cid Parameter
ClickAndEmail - SQL Injection via ID Parameter or Admin Credentials
Click&Rank - SQL Injection via id or userid or PassWord Parameter
Mini-stream Ripper 3.0.1.1 - Remote Code Execution via Long RTSP URL or HREF Attribute
Mini-stream ASX to MP3 Converter 3.0.0.7 - Stack-based Buffer Overflow via Long rtsp URL or HREF Attribute
OtsTurntables 1.00.027 - '.m3u' / '.ofl' Universal Buffer Overflow
Browser3D 3.5 - '.sfs' Local Stack Overflow
Elecard MPEG Player - '.m3u' Local Stack Overflow
MediaMonkey 3.0.6 - '.m3u' Local Buffer Overflow (PoC)
Elecard AVC HD PLAYER 5.5.90116 - Buffer Overflow
User Engine Lite ASP - Info Disclosure
PacPoll 4.0 - Unauthenticated Sensitive Information Exposure via Direct Database Request
Nightfall Personal Diary 1.0 - Info Disclosure
ASP User Engine.NET - Unauthenticated Sensitive Information Exposure via Direct Database Download
ASP SiteWare autoDealer 1 and 2 - SQL Injection via iType Parameter
ASP Product Catalog 1.0 - Unauthenticated Sensitive Information Exposure via Direct Database Request
Active Business Directory 2 - SQL Injection
Active Time Billing 3.2 - SQL Injection
ProFTPD Server <1.3.2rc2 - SQL Injection
Sagem Routers - Remote Authentication Bypass