CraCkEr
101 exploits
Active since Mar 2007
Joomla HikaShop 4.7.4 Reflected XSS via Product Filter
CVSS 6.1
Joomla Solidres 2.13.3 Reflected XSS via Multiple Parameters
CVSS 6.1
Joomla VirtueMart Shopping-Cart 4.0.12 Reflected XSS via keyword
CVSS 6.1
Joomla iProperty Real Estate 4.1.1 Reflected XSS via filter_keyword
CVSS 6.1
Joomla JLex Review 6.0.1 Reflected XSS via review_id Parameter
CVSS 6.1
WordPress adivaha Travel Plugin 2.3 SQL Injection via pid
CVSS 8.2
WordPress adivaha Travel Plugin 2.3 Reflected XSS via isMobile
CVSS 6.1
JAF CMS 4.0 RC1 - Remote File Inclusion via Forum Website Parameter
Creativeitem Academy LMS 7.0 - Reflected Cross-Site Scripting via Search Parameter
CVSS 6.1
JLex GuestBook 1.6.4 - Reflected Cross-Site Scripting via URL Parameter
Academy LMS 6.1 - Authenticated Stored Cross-Site Scripting via Profile Avatar Upload
CVSS 5.4
phpCollegeExchange 0.1.5c - Remote Code Execution via URL Parameter Injection
Campsite 3.3.0 RC1 - Remote Code Execution via GLOBALS[g_campsiteDir] Parameter
Campsite 3.3.0 RC1 - Cross-Site Scripting via listbasedir Parameter
Geody Dagger r12feb2008 - Remote Code Execution via dir_inc Parameter
PowerAward 1.1.0 RC1 - Cross-Site Scripting via l_vote_done Parameter
JAF CMS 4.0 and 4.0 RC2 - Remote Code Execution via main_dir Parameter
CMReams CMS 1.3.1.1 Beta 2 - Cross-Site Scripting via lang[be_red_text] Parameter
HomePH Design 2.10 RC2 - Remote Code Execution via Template Thumbnail Parameter
HomePH Design 2.10 RC2 - Cross-Site Scripting via Multiple Admin Parameters
Ourvideo CMS 9.5 - Path Traversal via RSS Prefix Parameter
Ourvideo CMS 9.5 - Remote Code Execution via include_connection Parameter
TinX/cms 1.1 - Cross-Site Scripting via Language Parameter
MM Chat 1.5 - Cross-Site Scripting via sitename or wmessage Parameter
YapBB 1.2 Beta 2 - Remote File Inclusion Code Execution