GoLd_M
171 exploits
Active since Jul 2005
PostGuestbook 0.6.1 - Remote File Inclusion via tpl_pgb_moddir Parameter
CJG EXPLORER PRO 3.3 - Remote Code Execution via g_pcltar_lib_dir Parameter
phpmyreports 3.0.11 - Remote File Inclusion via cfgPathModule Parameter
phpdj 0.5 - Remote Code Execution via djpage.php page Parameter
phpChess Community Edition 2.0 - RCE
phpBG 0.9.1 - Remote File Inclusion via rootdir Parameter
Splatt Forum 4.0 RC1 - Remote File Inclusion via bbcode_ref.php name Parameter
Crie seu PHPLojaFacil 0.1.5 - Remote File Inclusion via path_local Parameter
phpmyportal 3.0.0 RC3 - Remote File Inclusion via GLOBALS[CHEMINMODULES] Parameter
PHP_CON 1.3 - Remote Code Execution via webappcfg[APPPATH] Parameter
Pagode 0.5.8 - Directory Traversal via Absolute Parameter
Pakupaku CMS < 0.4 - Remote Code Execution via Path Traversal in Page Parameter
PeopleAggregator 1.2pre6 - Remote Code Execution via current_blockmodule_path Parameter
Persism CMS < 0.9.2 - Remote File Inclusion via system[path] Parameter
Philex < 0.2.3 - Unauthenticated Arbitrary File Read via download.php file Parameter
php_db_designer < 1.02 - Remote File Inclusion via _SESSION Parameter
PHP Project Management < 0.8.10 - Path Traversal via Multiple Module Parameters
PHP-MIP 0.1 - Remote File Inclusion via laypath Parameter
OxYProject OxYBox 0.85 - Remote Code Injection via edithistory.php oxymsg Parameter
Jakub Steiner's Original 0.11 - RCE
openmairie < 1.11 - Directory Traversal via dsn[phptype] Parameter
Open Translation Engine 0.7.8 - RCE
ol'bookmarks manager 0.7.5 - SQL Injection via id Parameter
nuBoard 0.5 - Remote Code Execution
ADOdb Lite < 1.42 - Remote Code Execution via last_module Parameter