BeyazKurt
24 exploits
Active since Mar 2007
Phlatline Personal Information Manager < 1.0 - Unauthenticated Arbitrary Password Change
Phlatline Personal Information Manager < 1.0 - Unauthenticated Arbitrary File Upload via upload.php
Goople CMS 1.7 - Unauthenticated Authentication Bypass via Loggedin Cookie
Phlatline Personal Information Manager 1.0 - Cross-Site Scripting via events.php date parameter
Phlatline Personal Information Manager 1.0 - Path Traversal & Arbitrary File Deletion via Upload.php
XOOPS Horoscope Module 1.0 - Remote File Inclusion via xoopsConfig[root_path] Parameter
Web Service Deluxe News Manager 1.0.1 Deluxe - 'footer.php' Local File Inclusion
ScarNews 1.2.1 - Unauthenticated Directory Traversal via sn_admin_dir Parameter
Sites for Scripts Gaming Directory - SQL Injection via cat_id Parameter
Sites for Scripts EZ Home Business Directory - SQL Injection via cat_id Parameter
ez_hosting_directory - SQL Injection via cat_id Parameter
Scripts for Sites EZ Link Directory - SQL Injection via cat_id Parameter
Phlatline Personal Information Manager 1.01 - Path Traversal via Notes.php ID Parameter
Linux Web Shop (LWS) php User Base 1.3beta - Path Traversal
php Help Agent 1.0-1.1 Full - Path Traversal
Linux Web Shop php Download Manager < 1.1 - Path Traversal via Content Parameter
News Manager Deluxe 1.0.1 - Remote File Inclusion via Template Parameter
Goople CMS 1.7 - Static Code Injection via Username and Password Parameters
GlossWord 1.8.1 - Remote File Inclusion via sys[path_addon] Parameter
Easynet4u Link Host - 'cat_id' SQL Injection
CFAGCMS 1 - Remote Code Execution via Main or Right Parameter Injection
ACGVannu < 1.3 - Directory Traversal via Rubrik Parameter
Easy Content Management Publishing - Unauthenticated Database Download via Direct Request
betaparticle_blog 7.0-7.0.2 - SQL Injection via Layout Parameter