Cold Zero
42 exploits
Active since Jan 2006
Liberum Help Desk <= 0.97.3 - SQL Injection via id or uid Parameter
vbzoom 1.11 - SQL Injection via MainID Parameter
vBGSiteMap 2.41 - Remote File Inclusion via Base Parameter
vBulletin vbBux/vbPlaza 2.x - 'vbplaza.php' Blind SQL Injection
vBulletin ajaxReg Module - SQL Injection
MiniBB < 1.5a - Remote File Inclusion via absolute_path Parameter
SimpCMS - SQL Injection via Search Keyword Parameter
phpRaid 3.0.6 - Remote File Inclusion via phpraid_dir Parameter
PhpShop Core 0.9.0 RC1 - 'PS_BASE' File Inclusion
PHPFanBase 2.x - 'protection.php' Remote File Inclusion
Longino Jacome php-Revista 1.1.2 - SQL Injection via Multiple Parameters
Longino Jacome php-Revista 1.1.2 - Code Injection
htmltonuke 2.0 alpha - Remote Code Execution via filnavn Parameter
PHP-NUKE iFrame Module - Remote File Inclusion via iframe.php file Parameter
PhotoPost vBGallery 2.4.2 - Authenticated Arbitrary File Upload via Executable Extension Bypass
OmniStar Article Manager - SQL Injection via Page ID Parameter
osDate 2.0.8 - Remote Code Execution via php121dir Parameter
eMetrix Online Keyword Research Tool - Path Traversal via Download Filename Parameter
MyPHPCommander 2.0 - Code Injection
Mambo Flatmenu < 1.7 - Remote File Inclusion via mosConfig_absolute_path Parameter
NFN Address Book - Remote File Inclusion via mosConfig_absolute_path Parameter
Mambo Calendar Module 1.5.5 - Remote File Inclusion via absolute_path Parameter
Antonis Ventouris Weather <mod_weather.php - RCE
JoomlaPack 1.0.4a2 RE - Remote Code Execution via mosConfig_absolute_path Parameter
Liberum Help Desk 0.97.3 - Info Disclosure