GulfTech Security
165 exploits
Active since Mar 2004
Lussumo Vanilla <= 1.1.4 - Cross-Site Scripting (XSS) via NewPassword, Account Picture, and Icon Fields
WHM AutoPilot <= 2.4.6.5 - Cross-Site Scripting via site_title or http_images Parameter
vBulletin < 3.0.0 RC4 - Cross Site Scripting
ViArt Shop < 3.5 - SQL Injection via products_rss.php category_id Parameter
WebSVN 1.x - Remote Code Execution via Username preg_replace Eval Switch
UBB.threads < 7.3.1 - SQL Injection via Forum[] Array Parameter
Tiki CMS/Groupware < 1.8.1 - Exposure of Sensitive Information via Direct Request to Multiple Scripts
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
UBB.Threads - SQL Injection via Multiple Parameters
Turnkey Web Tools SunShop <4.1.5 - SQL Injection
Synology Photostation < 6.7.2-3429 - Multiple Vulnerabilities
SugarCRM Sugar Sales < 2.0.1a - SQL Injection via Record Parameter
SugarCRM Sugar Sales < 2.0.1c - Directory Traversal via Module, Action, or Theme Parameters
Simple Machine Forum <1.0.4 - SQL Injection
CVSS 9.8
SitePanel2 2.6.1 - Multiple Input Validation Vulnerabilities
SquirrelMail <1.4.7 - Code Injection
SquirrelMail <= 1.4.4 - Remote Code Execution via Extract Function
ReviewPost PHP Pro < 2.84 - Cross-Site Scripting via si, cat, page, or report Parameter
RunCMS 1.1/1.2 Module Newbb_plus/Messages - SQL Injection
PostNuke < 0.726 Phoenix - Multiple Vulnerabilities