AmnPardaz Security Research Team
76 exploits
Active since Jul 2007
Modxcms - Path Traversal
Masir Camp E-Shop Module <3.0 - SQL Injection
iges CMS 2.0 - Cross-Site Scripting / SQL Injection
GL-SH Deaf Forum < 6.4.4 - Remote File Inclusion via Directory Traversal
eLineStudio Site Composer <= 2.6 - Exposure of Sensitive Information via Direct Request
Indiscripts Enthusiast <3.1.4 - RCE
cpCommerce 1.1.0 - Path Traversal via Language or Action Parameter
bitweaver - Path Traversal via wiki/edit.php suck_url Parameter
chillyCMS 1.1.3 - Cross-Site Scripting via Name Parameter
Chilek Content Management System <2.0.4 - Info Disclosure
bloofoxCMS 0.3 - SQL Injection via Username or Password Parameter
AneCMS 1.0 - Multiple Local File Inclusions
acidcat_cms 3.4.1 - Unauthenticated Arbitrary File Upload via FCKEditor
ACollab - Multiple Vulnerabilities
Blaze Apps 1.x - SQL Injection / HTML Injection
ParsaGostar ParsaWeb CMS - SQL Injection via id or txtSearch Parameter
Web Wiz Rich Text Editor 4.0 - Path Traversal via RTE_file_browser.asp sub Parameter
Web Wiz NewsPad 1.02 - Path Traversal via RTE_file_browser.asp Sub Parameter
Web Wiz Forums < 9.07 - Path Traversal via RTE_file_browser.asp or file_browser.asp Sub Parameter
Virtual Support Office XP 3.0.29 - Multiple Vulnerabilities
PD9 Software MegaBBS 2.2 - SQL Injection
Carbon Communities < 2.4 - Cross-Site Scripting via Redirect or OrderBy Parameter
Ferdows CMS Pro 1.1.0 - Multiple Vulnerabilities
DotNetNuke < 4.8.3 - Cross-Site Scripting via PATH_INFO
doitlive/cms < 2.50 - SQL Injection via ID Parameter or Licence Cookie