HACKERS PAL
76 exploits
Active since Nov 2005
Jupiter CMS - Unrestricted File Upload in Gallery Upload Module
Jupiter CMS - Stored Cross-Site Scripting via Multiple Language Parameters
Jupiter CMS - Stored Cross-Site Scripting via Multiple Language Parameters
Jupiter CMS - Stored Cross-Site Scripting via Multiple Language Parameters
IDMOS 1.0-beta - Remote Code Execution via site_absolute_path Parameter
Fully Modded phpBB2 - Remote File Inclusion via phpbb_root_path Parameter
Help Center Live < 2.0.2 - Remote File Inclusion via osTicket File Parameter
FreeWPS < 2.11 - Unauthenticated Arbitrary File Upload via upload.php
ELSEIF CMS Beta 0.6 - Remote Code Execution via SWFUpload Parameter Hash Collision
ezcontents_cms - Remote Code Execution via GLOBALS[gsLanguage] Parameter
Eskolar CMS 0.9.0.0 - 'index.php' SQL Injection
Drake CMS - Directory Traversal and Arbitrary File Execution via d_private Parameter
Cyphor < 0.19 - SQL Injection via show.php id Parameter
DCP-Portal SE 6.0 - Cross-Site Scripting via Multiple Parameters
DCP-Portal SE 6.0 - Cross-Site Scripting via Multiple Parameters
DCP-Portal SE 6.0 - SQL Injection via Username Parameter
e-vision CMS - SQL Injection via admin/all_users.php from Parameter
CubeCart 2.0.x - Cross-Site Scripting via Multiple Parameters
CMS Creamotion - Remote File Inclusion via cfg[document_uri] Parameter
Devellion CubeCart 2.0.x - SQL Injection
Devellion CubeCart 2.0.x - SQL Injection
CubeCart 2.0.x - Cross-Site Scripting via Multiple Parameters
Devellion CubeCart 2.0.x - SQL Injection
CubeCart 2.0.x - Cross-Site Scripting via Multiple Parameters
Devellion CubeCart 2.0.x - SQL Injection