Janek Vind
58 exploits
Active since Feb 2004
Coppermine Photo Gallery < 1.4.14 - Remote Code Execution via ImageMagick Picture Processing Parameters
XMB 1.8 Final SP2 - Cross-Site Scripting via Multiple Parameters
XMB 1.8 Final SP2 - SQL Injection via ppp/tpp/ascdesc/desc/addon Parameters
XMB 1.8 Final SP2 - Cross-Site Scripting via Multiple Parameters
XMB 1.8 Final SP2 - Cross-Site Scripting via Multiple Parameters
4nalbum 0.92 - SQL Injection via gid Parameter
Vivvo CMS 4.1.5.1 - Path Traversal via File Parameter
4nalbum_module 0.92 - Remote File Inclusion via basepath Parameter
4nalbum 0.92 for PHP-Nuke 6.5-7.0 - Cross-Site Scripting via z Parameter
PostNuke 0.726 - Cross-Site Scripting via Downloads, Web_links, or openwindow.php Parameters
phprofession 2.5 - Cross-Site Scripting via jcode Parameter
phProfession 2.5 - Information Disclosure via Direct Upload.php Request
PHP-Nuke MS-Analysis Module - Multiple Cross-Site Scripting Vulnerabilities
phprofession 2.5 - SQL Injection via Offset Parameter
PHP-Nuke MS-Analysis Module - HTTP Referrer Field SQL Injection
Php-Nuke 6.x-7.1.0 - SQL Injection via c_mid Parameter
Phorum < 5.1.20 - SQL Injection via Multiple Parameters
PHP-Nuke 6.0-7.3 - Cross-Site Scripting via Encyclopedia and Reviews Module Parameters
PHP-Nuke 6.0-7.8 - Cross-Site Scripting via Pagetitle Parameter
Phorum <5.1.22 - Privilege Escalation
Phorum < 5.1.21 - Cross-Site Scripting via group_id or smiley_id Parameter
PHP-Nuke 6.0-7.3 - Denial of Service via Reviews Module Score Parameter
Phorum < 5.1.20 - Cross-Site Request Forgery via Banlist Delete Parameter
Phorum < 5.1.20 - SQL Injection via Multiple Parameters
Phorum 5.0.x - 'FOLLOW.php' SQL Injection