Eugene Minaev
18 exploits
Active since Mar 2006
ekinboard < 1.1.0 - Unauthenticated Privilege Escalation via _groups Parameter
Uebimiau Webmail 2.7.10 and 2.7.2 - Authenticated Path Traversal via Selected Theme Parameter
XOOPS mod_gallery - Remote File Inclusion via GALLERY_BASEDIR Parameter
Uebimiau Webmail 2.7.10 and 2.7.2 - Unauthenticated Authentication Bypass via sess[auth] Parameter
Strawberry 1.1.1 - 'html.php' Remote Code Execution
SmallNuke 2.0.4 - SQL Injection via User Email Parameter
RunCMS 1.6.1 - SQL Injection via Client-Ip Parameter
loudblog < 0.8.0 - Remote Code Execution via Template Parameter
Invision Power Board (IP.Board) 2.1.7 - 'ACTIVE' Cross-Site Scripting / SQL Injection
Horde Application Framework 3.0.9 - Info Disclosure
iGaming CMS <= 1.3.1 - SQL Injection via Section Parameter
eggblog < 3.1.0 - SQL Injection via eggblogpassword Cookie Parameter
FlexBB < 0.6.3 - SQL Injection via flexbb_temp_id Cookie Parameter
ekinboard < 1.1.0 - Unauthenticated Arbitrary File Upload and Remote Code Execution via Avatar File Extension Bypass
CuteNews 1.1.1 - Remote Code Execution via Text Parameter in Highlight Plugin
AJchat 0.10 - SQL Injection via Numeric Parameter Hash Bypass
Firebird < 1.0.3, 1.5.x < 1.5.6, 2.0.x < 2.0.4, 2.1.x < 2.1.0 RC1 - Remote Code Execution via Crafted XDR Requests
Valve Software Half-Life Counter-Strike 1.6 - DoS