GulfTech Security
165 exploits
Active since Mar 2004
Phorum < 5.0.3 Beta - Cross Site Scripting
PEAR XML_RPC < 1.3.0 - Remote Code Execution
PAFileDB 1.1.3/2.1.1/3.0/3.1 - Multiple Input Validation Vulnerabilities
osCommerce 2.2 - SQL Injection
Open Bulletin Board <= 1.0.6 - Cross-Site Scripting via Multiple Parameters
osCommerce 2.1/2.2 - 'product_info.php' SQL Injection
osCommerce 2.2 - HTTP Response Splitting
osCommerce < 2.2-MS2 - Multiple Vulnerabilities
osTicket 1.2/1.3 - Multiple Input Validation / Remote Code Injection Vulnerabilities
paFAQ 1.0 Beta 4 - SQL Injection via Username or ID Parameter
paFAQ 1.0 Beta 4 - Cross-Site Scripting via Question Action ID Parameter
ModernBill < 4.3.0 - Cross-Site Scripting via orderwiz.php c_code or aid Parameters
MySQL Eventum <= 1.5.5 - SQL Injection via Multiple Functions
MySQL Eventum <= 1.5.5 - Cross-Site Scripting via id, release, or F Parameter
MySQL Eventum <= 1.5.5 - Cross-Site Scripting via id, release, or F Parameter
MySQL Eventum <= 1.5.5 - Cross-Site Scripting via id, release, or F Parameter
ModernBill < 4.3.0 - Remote File Inclusion via DIR Parameter
ModernBill < 4.3.0 - Cross-Site Scripting via orderwiz.php c_code or aid Parameters
Mambo 4.5.3, 4.5.3h - Path Traversal via mos_change_template Parameter
Mambo < 4.5.4 - SQL Injection
Mambo < 4.5 - Multiple Vulnerabilities
Kayako eSupport 2.x - Cross-Site Scripting via index.php searchm Parameter
DB_eSession < 1.0.2 - SQL Injection via $_sess_id_set Variable
Kayako SupportSuite < 3.20.02 - Cross-Site Scripting via SessionID Parameter
Kayako SupportSuite < 3.20.02 - Cross-Site Scripting via SessionID Parameter