EgiX
136 exploits
Active since Feb 2005
HP OpenView Data Protector 5.50/6.0 - Remote Code Execution via MSG_PROTOCOL Packet
HP OpenView Data Protector 5.50/6.0 - Remote Code Execution via MSG_PROTOCOL Packet
HP OpenView Storage Data Protector 5.50 and 6.0 - Remote Code Execution via MSG_PROTOCOL Command
GdPicture Light Imaging Toolkit and Pro Imaging SDK - Arbitrary File Write via SaveAsPDF Method
ZeusCMS < 0.3 - Path Traversal via Dir Parameter
Ajax File and Image Manager < 1.1 - Remote Code Execution via PHP Code Injection in data.php
WordPress Plugin Zingiri 2.2.3 - 'ajax_save_name.php' Remote Code Execution
Kish Guest Posting plugin 1.2 - RCE
WikkaWiki 1.3.1 and 1.3.2 - Arbitrary PHP Code Execution via File Upload with Multiple Extensions
WikkaWiki 1.3.1 and 1.3.2 - Cross-Site Request Forgery in AdminUsers Component
vBSEO < 3.6.0 - Remote Code Execution via char_repl Parameter
Vanilla Forums <2.0.18.8 - Code Injection
WebCalendar < 1.2.5 - Local File Inclusion
CVSS 8.8
vtiger CRM 5.1.0-5.4.0 - Authentication Bypass via Improper Session Validation
CVSS 9.8
vBulletin <= 5.5.4 - Remote Code Execution via Custom Avatar Handling
CVSS 9.8
TikiWiki CMS/Groupware < 6.7 LTS & < 8.4 - RCE
CVSS 9.8
Tiki < 8.2 - Authenticated Remote Code Execution via Regex Parameters
CVSS 7.2
TikiWiki CMS/Groupware < 8.2 - Exposure of Sensitive Information via Direct Request
TinyWebGallery <= 1.7.6 - Remote File Inclusion via Lang Parameter
SugarCRM CE <= 6.3.1 - Code Injection
CVSS 9.8
Support Incident Tracker 3.45-3.65 - Information Disclosure via translate.php save action
SugarCRM CE <= 6.3.1 - Code Injection
CVSS 9.8
Siteatschool < 2.3.10 - SQL Injection
Site@School 2.4.10 - 'FCKeditor' Session Hijacking / Arbitrary File Upload
RoSPORA 1.5.0 - Remote PHP Code Injection