High-Tech Bridge SA Security Research Lab
21 exploits
Active since Jan 2012
Support Incident Tracker < 3.65 - SQL Injection via Multiple Parameters
Support Incident Tracker < 3.65 - Cross-Site Scripting via Multiple Parameters
Piwigo < 2.3.3 - Remote File Inclusion via Upgrade Language Parameter
Newscoop 3.5.x < 3.5.5 and 4.x < 4 RC4 - Cross-Site Scripting via Back Parameter or Token/Email Parameters
Newscoop - SQL Injection via f_country_code Parameter
Newscoop 3.5.x < 3.5.5 and 4 < RC4 - Remote Code Execution via GLOBALS[g_campsiteDir] Parameter
threedify designer 5.0.2 - Multiple Vulnerabilities
Sony VAIO PC Wireless LAN Wizard 1.0-4.11 - Buffer Overflow
XOOPS < 2.5.5 - Cross-Site Scripting via Multiple Parameters
WordPress Plugin Ajax Category Dropdown 0.1.5 - Multiple Vulnerabilities
VCalendar 1.1.5 - Cross-Site Request Forgery
Support Incident Tracker < 3.65 - Cross-Site Request Forgery via User Profile Edit
PluXml < 5.1.5 - Path Traversal via default_lang Parameter
Piwigo < 2.3.4 - Cross-Site Scripting via Admin Panel Parameters
phpGraphy 0.9.13b - Multiple Vulnerabilities
PHPDug 2.0.0 - Multiple Vulnerabilities
Newscoop < 3.5.5 - Cross-Site Scripting via f_user_name Parameter
Free Simple CMS 1.0 - Multiple Vulnerabilities
Extcalendar 2.0b2 - 'cal_search.php' SQL Injection
dalbum 1.43 - Multiple Vulnerabilities
4Images 1.7.9 - Multiple Vulnerabilities